Apache Tomcat Request Object Security Bypass Vulnerability
BID:51442
Info
Apache Tomcat Request Object Security Bypass Vulnerability
| Bugtraq ID: | 51442 |
| Class: | Design Error |
| CVE: |
CVE-2011-3375 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 17 2012 12:00AM |
| Updated: | May 23 2017 04:26PM |
| Credit: | Reported by the vendor |
| Vulnerable: |
VMWare vCenter 5.0 0 VMWare vCenter 4.1 VMWare vCenter 4.0 VMWare ESX 4.1 VMWare ESX 4.0 Ubuntu Ubuntu Linux 11.10 i386 Ubuntu Ubuntu Linux 11.10 amd64 Ubuntu Ubuntu Linux 11.04 powerpc Ubuntu Ubuntu Linux 11.04 i386 Ubuntu Ubuntu Linux 11.04 ARM Ubuntu Ubuntu Linux 11.04 amd64 Ubuntu Ubuntu Linux 10.10 powerpc Ubuntu Ubuntu Linux 10.10 i386 Ubuntu Ubuntu Linux 10.10 ARM Ubuntu Ubuntu Linux 10.10 amd64 Ubuntu Ubuntu Linux 10.04 sparc Ubuntu Ubuntu Linux 10.04 powerpc Ubuntu Ubuntu Linux 10.04 i386 Ubuntu Ubuntu Linux 10.04 ARM Ubuntu Ubuntu Linux 10.04 amd64 Sun Solaris 10 Redhat JBoss Enterprise Web Server for RHEL 6 1.0 Redhat JBoss Enterprise Web Server for RHEL 5 Server 1.0 IBM Storwize V7000 Unified 1.3.2 0 IBM Storwize V7000 Unified 1.3.1.0 IBM Storwize V7000 Unified 1.3.0.5 IBM Storwize V7000 Unified 1.3.0.0 Gentoo Linux Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 CTERA Networks CTERA Portal 3.1 Avaya Aura Experience Portal 6.0 Avaya Aura Application Enablement Services 6.1.1 Apache Tomcat 7.0.17 Apache Tomcat 7.0.16 Apache Tomcat 7.0.15 Apache Tomcat 7.0.14 Apache Tomcat 7.0.13 Apache Tomcat 7.0.12 Apache Tomcat 7.0.2 Apache Tomcat 7.0.1 Apache Tomcat 7.0 Apache Tomcat 6.0.32 Apache Tomcat 7.0.21 Apache Tomcat 7.0.20 Apache Tomcat 7.0.19 Apache Tomcat 7.0.18 Apache Tomcat 7.0.17 Apache Tomcat 7.0.11 Apache Tomcat 7.0.10 Apache Tomcat 6.0.33 Apache Tomcat 6.0.32 Apache Tomcat 6.0.31 Apache Tomcat 6.0.30 |
| Not Vulnerable: |
IBM Storwize V7000 Unified 1.4 0 IBM Storwize V7000 Unified 1.3.2 3 CTERA Networks CTERA Portal 3.2.28 CTERA Networks CTERA Portal 3.1.39 Apache Tomcat 6.0.35 Apache Tomcat 7.0.22 |
Discussion
Apache Tomcat Request Object Security Bypass Vulnerability
Apache Tomcat is prone to a security-bypass vulnerability.
Successful exploits will allow attackers to bypass certain security policy restrictions.
The following Apache Tomcat versions are vulnerable:
6.0.30 to 6.0.33
7.0.0 to 7.0.21
Apache Tomcat is prone to a security-bypass vulnerability.
Successful exploits will allow attackers to bypass certain security policy restrictions.
The following Apache Tomcat versions are vulnerable:
6.0.30 to 6.0.33
7.0.0 to 7.0.21
Exploit / POC
Apache Tomcat Request Object Security Bypass Vulnerability
An attacker needs to host a malicious web application on the affected webserver.
An attacker needs to host a malicious web application on the affected webserver.
Solution / Fix
Apache Tomcat Request Object Security Bypass Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Apache Tomcat Request Object Security Bypass Vulnerability
References:
References:
- [Security-announce] VMSA-2012-0005 (VMware)
- Apache Tomcat Homepage (Apache)
- Apache Tomcat Information disclosure (CVE-2011-3375) (Avaya)
- Multiple vulnerabilities in CTERA Portal (SEC Consult Vulnerability Lab)
- Multiple vulnerabilities in Oracle Java Web Console (Oracle)
- Multiple vulnerabilities in Oracle Java Web Console1 (Oracle)
- Security Bulletin: Storwize V7000 Unified Update Includes Fixes for Multiple Ven (IBM)