Описание
ELSA-2018-2921: tomcat security update (IMPORTANT)
[0:7.0.76-8]
- Resolves: rhbz#1608608 CVE-2018-1336 tomcat: A bug in the UTF 8 decoder can lead to DoS
Обновленные пакеты
Oracle Linux 7
Oracle Linux aarch64
tomcat
7.0.76-8.el7_5
tomcat-admin-webapps
7.0.76-8.el7_5
tomcat-docs-webapp
7.0.76-8.el7_5
tomcat-el-2.2-api
7.0.76-8.el7_5
tomcat-javadoc
7.0.76-8.el7_5
tomcat-jsp-2.2-api
7.0.76-8.el7_5
tomcat-jsvc
7.0.76-8.el7_5
tomcat-lib
7.0.76-8.el7_5
tomcat-servlet-3.0-api
7.0.76-8.el7_5
tomcat-webapps
7.0.76-8.el7_5
Oracle Linux x86_64
tomcat
7.0.76-8.el7_5
tomcat-admin-webapps
7.0.76-8.el7_5
tomcat-docs-webapp
7.0.76-8.el7_5
tomcat-el-2.2-api
7.0.76-8.el7_5
tomcat-javadoc
7.0.76-8.el7_5
tomcat-jsp-2.2-api
7.0.76-8.el7_5
tomcat-jsvc
7.0.76-8.el7_5
tomcat-lib
7.0.76-8.el7_5
tomcat-servlet-3.0-api
7.0.76-8.el7_5
tomcat-webapps
7.0.76-8.el7_5
Связанные CVE
Связанные уязвимости
An improper handing of overflow in the UTF-8 decoder with supplementary characters can lead to an infinite loop in the decoder causing a Denial of Service. Versions Affected: Apache Tomcat 9.0.0.M9 to 9.0.7, 8.5.0 to 8.5.30, 8.0.0.RC1 to 8.0.51, and 7.0.28 to 7.0.86.
An improper handing of overflow in the UTF-8 decoder with supplementary characters can lead to an infinite loop in the decoder causing a Denial of Service. Versions Affected: Apache Tomcat 9.0.0.M9 to 9.0.7, 8.5.0 to 8.5.30, 8.0.0.RC1 to 8.0.51, and 7.0.28 to 7.0.86.
An improper handing of overflow in the UTF-8 decoder with supplementary characters can lead to an infinite loop in the decoder causing a Denial of Service. Versions Affected: Apache Tomcat 9.0.0.M9 to 9.0.7, 8.5.0 to 8.5.30, 8.0.0.RC1 to 8.0.51, and 7.0.28 to 7.0.86.
An improper handing of overflow in the UTF-8 decoder with supplementar ...
In Apache Tomcat there is an improper handing of overflow in the UTF-8 decoder