Описание
ELSA-2011-1845: tomcat5 security update (MODERATE)
[0:5.5.23-0jpp.22]
- Resolves: CVE-2011-0013 rhbz 675931
- Resolves: CVE-2010-3718 rhbz 675931
- Resolves: CVE-2011-1184 rhbz 744983
- Resolves: CVE-2011-2204 rhbz 719181
Обновленные пакеты
Oracle Linux 5
Oracle Linux ia64
tomcat5
5.5.23-0jpp.22.el5_7
tomcat5-admin-webapps
5.5.23-0jpp.22.el5_7
tomcat5-common-lib
5.5.23-0jpp.22.el5_7
tomcat5-jasper
5.5.23-0jpp.22.el5_7
tomcat5-jasper-javadoc
5.5.23-0jpp.22.el5_7
tomcat5-jsp-2.0-api
5.5.23-0jpp.22.el5_7
tomcat5-jsp-2.0-api-javadoc
5.5.23-0jpp.22.el5_7
tomcat5-server-lib
5.5.23-0jpp.22.el5_7
tomcat5-servlet-2.4-api
5.5.23-0jpp.22.el5_7
tomcat5-servlet-2.4-api-javadoc
5.5.23-0jpp.22.el5_7
tomcat5-webapps
5.5.23-0jpp.22.el5_7
Oracle Linux x86_64
tomcat5
5.5.23-0jpp.22.el5_7
tomcat5-admin-webapps
5.5.23-0jpp.22.el5_7
tomcat5-common-lib
5.5.23-0jpp.22.el5_7
tomcat5-jasper
5.5.23-0jpp.22.el5_7
tomcat5-jasper-javadoc
5.5.23-0jpp.22.el5_7
tomcat5-jsp-2.0-api
5.5.23-0jpp.22.el5_7
tomcat5-jsp-2.0-api-javadoc
5.5.23-0jpp.22.el5_7
tomcat5-server-lib
5.5.23-0jpp.22.el5_7
tomcat5-servlet-2.4-api
5.5.23-0jpp.22.el5_7
tomcat5-servlet-2.4-api-javadoc
5.5.23-0jpp.22.el5_7
tomcat5-webapps
5.5.23-0jpp.22.el5_7
Oracle Linux i386
tomcat5
5.5.23-0jpp.22.el5_7
tomcat5-admin-webapps
5.5.23-0jpp.22.el5_7
tomcat5-common-lib
5.5.23-0jpp.22.el5_7
tomcat5-jasper
5.5.23-0jpp.22.el5_7
tomcat5-jasper-javadoc
5.5.23-0jpp.22.el5_7
tomcat5-jsp-2.0-api
5.5.23-0jpp.22.el5_7
tomcat5-jsp-2.0-api-javadoc
5.5.23-0jpp.22.el5_7
tomcat5-server-lib
5.5.23-0jpp.22.el5_7
tomcat5-servlet-2.4-api
5.5.23-0jpp.22.el5_7
tomcat5-servlet-2.4-api-javadoc
5.5.23-0jpp.22.el5_7
tomcat5-webapps
5.5.23-0jpp.22.el5_7
Ссылки на источники
Связанные уязвимости
ELSA-2011-1780: tomcat6 security and bug fix update (MODERATE)
Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.17, when the MemoryUserDatabase is used, creates log entries containing passwords upon encountering errors in JMX user creation, which allows local users to obtain sensitive information by reading a log file.
Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.17, when the MemoryUserDatabase is used, creates log entries containing passwords upon encountering errors in JMX user creation, which allows local users to obtain sensitive information by reading a log file.
Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.17, when the MemoryUserDatabase is used, creates log entries containing passwords upon encountering errors in JMX user creation, which allows local users to obtain sensitive information by reading a log file.
Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7 ...