Количество 14
Количество 14
GHSA-7w75-32cg-r6g2
Apache Tomcat Denial of Service due to improper input validation vulnerability for HTTP/2 requests

CVE-2024-24549
Denial of Service due to improper input validation vulnerability for HTTP/2 requests in Apache Tomcat. When processing an HTTP/2 request, if the request exceeded any of the configured limits for headers, the associated HTTP/2 stream was not reset until after all of the headers had been processed.This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.0-M16, from 10.1.0-M1 through 10.1.18, from 9.0.0-M1 through 9.0.85, from 8.5.0 through 8.5.98. Users are recommended to upgrade to version 11.0.0-M17, 10.1.19, 9.0.86 or 8.5.99 which fix the issue.

CVE-2024-24549
Denial of Service due to improper input validation vulnerability for HTTP/2 requests in Apache Tomcat. When processing an HTTP/2 request, if the request exceeded any of the configured limits for headers, the associated HTTP/2 stream was not reset until after all of the headers had been processed.This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.0-M16, from 10.1.0-M1 through 10.1.18, from 9.0.0-M1 through 9.0.85, from 8.5.0 through 8.5.98. Users are recommended to upgrade to version 11.0.0-M17, 10.1.19, 9.0.86 or 8.5.99 which fix the issue.

CVE-2024-24549
Denial of Service due to improper input validation vulnerability for HTTP/2 requests in Apache Tomcat. When processing an HTTP/2 request, if the request exceeded any of the configured limits for headers, the associated HTTP/2 stream was not reset until after all of the headers had been processed.This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.0-M16, from 10.1.0-M1 through 10.1.18, from 9.0.0-M1 through 9.0.85, from 8.5.0 through 8.5.98. Users are recommended to upgrade to version 11.0.0-M17, 10.1.19, 9.0.86 or 8.5.99 which fix the issue.
CVE-2024-24549
Denial of Service due to improper input validation vulnerability for H ...

BDU:2024-02608
Уязвимость сервера приложений Apache Tomcat, связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю вызвать отказ в обслуживании

SUSE-SU-2024:1345-1
Security update for tomcat

SUSE-SU-2024:1205-1
Security update for tomcat

SUSE-SU-2024:1204-1
Security update for tomcat10

ROS-20240703-12
Уязвимость tomcat

RLSA-2024:3666
Important: tomcat security and bug fix update

RLSA-2024:3307
Important: tomcat security and bug fix update
ELSA-2024-3666
ELSA-2024-3666: tomcat security and bug fix update (IMPORTANT)
ELSA-2024-3307
ELSA-2024-3307: tomcat security and bug fix update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-7w75-32cg-r6g2 Apache Tomcat Denial of Service due to improper input validation vulnerability for HTTP/2 requests | CVSS3: 7.5 | 55% Средний | больше 1 года назад | |
![]() | CVE-2024-24549 Denial of Service due to improper input validation vulnerability for HTTP/2 requests in Apache Tomcat. When processing an HTTP/2 request, if the request exceeded any of the configured limits for headers, the associated HTTP/2 stream was not reset until after all of the headers had been processed.This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.0-M16, from 10.1.0-M1 through 10.1.18, from 9.0.0-M1 through 9.0.85, from 8.5.0 through 8.5.98. Users are recommended to upgrade to version 11.0.0-M17, 10.1.19, 9.0.86 or 8.5.99 which fix the issue. | CVSS3: 7.5 | 55% Средний | больше 1 года назад |
![]() | CVE-2024-24549 Denial of Service due to improper input validation vulnerability for HTTP/2 requests in Apache Tomcat. When processing an HTTP/2 request, if the request exceeded any of the configured limits for headers, the associated HTTP/2 stream was not reset until after all of the headers had been processed.This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.0-M16, from 10.1.0-M1 through 10.1.18, from 9.0.0-M1 through 9.0.85, from 8.5.0 through 8.5.98. Users are recommended to upgrade to version 11.0.0-M17, 10.1.19, 9.0.86 or 8.5.99 which fix the issue. | CVSS3: 7.5 | 55% Средний | больше 1 года назад |
![]() | CVE-2024-24549 Denial of Service due to improper input validation vulnerability for HTTP/2 requests in Apache Tomcat. When processing an HTTP/2 request, if the request exceeded any of the configured limits for headers, the associated HTTP/2 stream was not reset until after all of the headers had been processed.This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.0-M16, from 10.1.0-M1 through 10.1.18, from 9.0.0-M1 through 9.0.85, from 8.5.0 through 8.5.98. Users are recommended to upgrade to version 11.0.0-M17, 10.1.19, 9.0.86 or 8.5.99 which fix the issue. | CVSS3: 7.5 | 55% Средний | больше 1 года назад |
CVE-2024-24549 Denial of Service due to improper input validation vulnerability for H ... | CVSS3: 7.5 | 55% Средний | больше 1 года назад | |
![]() | BDU:2024-02608 Уязвимость сервера приложений Apache Tomcat, связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 55% Средний | больше 1 года назад |
![]() | SUSE-SU-2024:1345-1 Security update for tomcat | около 1 года назад | ||
![]() | SUSE-SU-2024:1205-1 Security update for tomcat | около 1 года назад | ||
![]() | SUSE-SU-2024:1204-1 Security update for tomcat10 | около 1 года назад | ||
![]() | ROS-20240703-12 Уязвимость tomcat | CVSS3: 7.5 | 55% Средний | 12 месяцев назад |
![]() | RLSA-2024:3666 Important: tomcat security and bug fix update | около 1 года назад | ||
![]() | RLSA-2024:3307 Important: tomcat security and bug fix update | около 1 года назад | ||
ELSA-2024-3666 ELSA-2024-3666: tomcat security and bug fix update (IMPORTANT) | около 1 года назад | |||
ELSA-2024-3307 ELSA-2024-3307: tomcat security and bug fix update (IMPORTANT) | около 1 года назад |
Уязвимостей на страницу