QID 997483
Date Published: 2024-02-26
QID 997483: Java (Maven) Security Update for org.apache.tomcat:tomcat (GHSA-5x5f-9r6q-q7mh)
Apache Tomcat 6.0.0 through 6.0.15 processes parameters in the context of the wrong request when an exception occurs during parameter processing, which might allow remote attackers to obtain sensitive information, as demonstrated by disconnecting during this processing in order to trigger the exception.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-5x5f-9r6q-q7mh for updates and patch information.
Vendor References
- GHSA-5x5f-9r6q-q7mh -
github.com/advisories/GHSA-5x5f-9r6q-q7mh
CVEs related to QID 997483
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-5x5f-9r6q-q7mh | org.apache.tomcat:tomcat |
|