Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-28709

Опубликовано: 22 мая 2023
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

The fix for CVE-2023-24998 was incomplete for Apache Tomcat 11.0.0-M2 to 11.0.0-M4, 10.1.5 to 10.1.7, 9.0.71 to 9.0.73 and 8.5.85 to 8.5.87. If non-default HTTP connector settings were used such that the maxParameterCount could be reached using query string parameters and a request was submitted that supplied exactly maxParameterCount parameters in the query string, the limit for uploaded request parts could be bypassed with the potential for a denial of service to occur.

A flaw was found in Apache Tomcat due to an incomplete fix for CVE-2023-24998, which aims to limit the uploaded request parts that can be bypassed in a request. This issue may allow an attacker to use a malicious upload or series of uploads to trigger a denial of service.

Отчет

The impact for this flaw is considered moderate to match the Apache Software Foundation impact, considering the non-default configuration in CVE description. pki-servlet-engine has been obsoleted in Red Hat Enterprise Linux 8.9 and later by Tomcat, so no additional fixes for the engine would be made available.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6tomcat6Out of support scope
Red Hat Enterprise Linux 7tomcatOut of support scope
Red Hat Enterprise Linux 8pki-deps:10.6/pki-servlet-engineAffected
Red Hat Enterprise Linux 8pki-servlet-containerNot affected
Red Hat Enterprise Linux 8pki-servlet-engineWill not fix
Red Hat Enterprise Linux 9pki-servlet-engineWill not fix
Red Hat JBoss Web Server 3tomcatWill not fix
Red Hat JBoss Web Server 3tomcat7Will not fix
Red Hat JBoss Web Server 3tomcat8Will not fix
JWS 5.7.4 releasetomcatFixedRHSA-2023:491004.09.2023

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-193
https://bugzilla.redhat.com/show_bug.cgi?id=2210321tomcat: Fix for CVE-2023-24998 was incomplete

EPSS

Процентиль: 48%
0.00253
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 2 лет назад

The fix for CVE-2023-24998 was incomplete for Apache Tomcat 11.0.0-M2 to 11.0.0-M4, 10.1.5 to 10.1.7, 9.0.71 to 9.0.73 and 8.5.85 to 8.5.87. If non-default HTTP connector settings were used such that the maxParameterCount could be reached using query string parameters and a request was submitted that supplied exactly maxParameterCount parameters in the query string, the limit for uploaded request parts could be bypassed with the potential for a denial of service to occur.

CVSS3: 7.5
nvd
около 2 лет назад

The fix for CVE-2023-24998 was incomplete for Apache Tomcat 11.0.0-M2 to 11.0.0-M4, 10.1.5 to 10.1.7, 9.0.71 to 9.0.73 and 8.5.85 to 8.5.87. If non-default HTTP connector settings were used such that the maxParameterCount could be reached using query string parameters and a request was submitted that supplied exactly maxParameterCount parameters in the query string, the limit for uploaded request parts could be bypassed with the potential for a denial of service to occur.

CVSS3: 7.5
debian
около 2 лет назад

The fix for CVE-2023-24998 was incomplete for Apache Tomcat 11.0.0-M2 ...

suse-cvrf
около 2 лет назад

Security update for tomcat

suse-cvrf
около 2 лет назад

Security update for tomcat

EPSS

Процентиль: 48%
0.00253
Низкий

7.5 High

CVSS3