Amazon Linux 2023 : tomcat9, tomcat9-admin-webapps, tomcat9-el-3.0-api (ALAS2023-2024-577)

It is, therefore, affected by multiple vulnerabilities as referenced in the ALAS2023-2024-577 advisory. Denial of Service via incomplete cleanup vulnerability in Apache Tomcat. It was possible for W ...

Continue Reading
Debian dla-3779 : libtomcat9-embed-java – security update

The remote Debian 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the dla-3779 advisory. Denial of Service via incomplete cleanup vulnerability in Apach ...

Continue Reading
[SECURITY] [DLA 3779-1] tomcat9 security update

Debian LTS Advisory DLA-3779-1 [email protected] https://www.debian.org/lts/security/ Markus Koschany April 06, 2024 https: ...

Continue Reading
Security Bulletin: IBM Integration Bus for z/OS is vulnerable to a denial of service due to Apache Tomcat (CVE-2024-24549, CVE-2024-23672)

Summary IBM Integration Bus for z/OS is vulnerable to a denial of service due to Apache Tomcat. This bulletin identifies the steps to take to address the vulnerability. Vulnerability Details ** CVEID: ...

Continue Reading
BIT-tomcat-2024-23672

Denial of Service via incomplete cleanup vulnerability in Apache Tomcat. It was possible for WebSocket clients to keep WebSocket connections open leading to increased resource consumption.This issue a ...

Continue Reading
StimulusReflex arbitrary method call

Summary More methods than expected can be called on reflex instances. Being able to call some of them has security implications. Details To invoke a reflex a websocket message of the following shape i ...

Continue Reading
StimulusReflex arbitrary method call

Summary More methods than expected can be called on reflex instances. Being able to call some of them has security implications. Details To invoke a reflex a websocket message of the following shape i ...

Continue Reading
StimulusReflex arbitrary method call

Summary More methods than expected can be called on reflex instances. Being able to call some of them has security implications. Details To invoke a reflex a websocket message of the following shape i ...

Continue Reading

Back to Main

Subscribe for the latest news: