tomcat: denial of service
| Package(s): | tomcat | CVE #(s): | CVE-2016-6817 | ||||||||||||
| Created: | December 15, 2016 | Updated: | December 21, 2016 | ||||||||||||
| Description: | From the Red Hat bugzilla entry:
The HTTP/2 header parser entered an infinite loop if a header was received that was larger than the available buffer. This made a denial of service attack possible. | ||||||||||||||
| Alerts: |
| ||||||||||||||
