|
|
| |
|
| |
tomcat: multiple vulnerabilities
| Package(s): | tomcat6, tomcat7 |
CVE #(s): | CVE-2012-3544
CVE-2013-2067
|
| Created: | May 29, 2013 |
Updated: | August 7, 2013 |
| Description: |
From the Ubuntu advisory:
It was discovered that Tomcat incorrectly handled certain requests
submitted using chunked transfer encoding. A remote attacker could use this
flaw to cause the Tomcat server to stop responding, resulting in a denial
of service. This issue only affected Ubuntu 10.04 LTS and Ubuntu 12.04 LTS.
(CVE-2012-3544)
It was discovered that Tomcat incorrectly handled certain authentication
requests. A remote attacker could possibly use this flaw to inject a
request that would get executed with a victim's credentials. This issue
only affected Ubuntu 10.04 LTS, Ubuntu 12.04 LTS, and Ubuntu 12.10.
(CVE-2013-2067) |
| Alerts: |
|
( Log in to post comments)
|
|
|