Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-2227

Опубликовано: 13 июл. 2010
Источник: ubuntu
Приоритет: medium
CVSS2: 6.4

Описание

Apache Tomcat 5.5.0 through 5.5.29, 6.0.0 through 6.0.27, and 7.0.0 beta does not properly handle an invalid Transfer-Encoding header, which allows remote attackers to cause a denial of service (application outage) or obtain sensitive information via a crafted header that interferes with "recycling of a buffer."

РелизСтатусПримечание
dapper

ignored

end of life
devel

DNE

hardy

DNE

jaunty

DNE

karmic

DNE

lucid

DNE

maverick

DNE

natty

DNE

oneiric

DNE

upstream

released

5.5.30

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

ignored

end of life
jaunty

ignored

end of life
karmic

DNE

lucid

DNE

maverick

DNE

natty

DNE

oneiric

DNE

upstream

released

5.5.30

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

released

6.0.28-2
hardy

DNE

jaunty

released

6.0.18-0ubuntu6.3
karmic

released

6.0.20-2ubuntu2.2
lucid

released

6.0.24-2ubuntu1.3
maverick

released

6.0.28-2
natty

released

6.0.28-2
oneiric

released

6.0.28-2
upstream

released

6.0.28

Показывать по

6.4 Medium

CVSS2

Связанные уязвимости

redhat
почти 15 лет назад

Apache Tomcat 5.5.0 through 5.5.29, 6.0.0 through 6.0.27, and 7.0.0 beta does not properly handle an invalid Transfer-Encoding header, which allows remote attackers to cause a denial of service (application outage) or obtain sensitive information via a crafted header that interferes with "recycling of a buffer."

nvd
почти 15 лет назад

Apache Tomcat 5.5.0 through 5.5.29, 6.0.0 through 6.0.27, and 7.0.0 beta does not properly handle an invalid Transfer-Encoding header, which allows remote attackers to cause a denial of service (application outage) or obtain sensitive information via a crafted header that interferes with "recycling of a buffer."

debian
почти 15 лет назад

Apache Tomcat 5.5.0 through 5.5.29, 6.0.0 through 6.0.27, and 7.0.0 be ...

github
около 3 лет назад

Apache Tomcat does not properly handle an invalid Transfer-Encoding header

oracle-oval
почти 15 лет назад

ELSA-2010-0580: tomcat5 security update (IMPORTANT)

6.4 Medium

CVSS2

Уязвимость CVE-2010-2227