Количество 16
Количество 16
CVE-2024-56337
Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.0.97. The following versions were EOL at the time the CVE was created but are known to be affected: 8.5.0 though 8.5.100. Other, older, EOL versions may also be affected. The mitigation for CVE-2024-50379 was incomplete. Users running Tomcat on a case insensitive file system with the default servlet write enabled (readonly initialisation parameter set to the non-default value of false) may need additional configuration to fully mitigate CVE-2024-50379 depending on which version of Java they are using with Tomcat: - running on Java 8 or Java 11: the system property sun.io.useCanonCaches must be explicitly set to false (it defaults to true) - running on Java 17: the system property sun.io.useCanonCaches, if set, must be set to false (it defaults to false) - running on Java 21 onward...
CVE-2024-56337
Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.0.97. The following versions were EOL at the time the CVE was created but are known to be affected: 8.5.0 though 8.5.100. Other, older, EOL versions may also be affected. The mitigation for CVE-2024-50379 was incomplete. Users running Tomcat on a case insensitive file system with the default servlet write enabled (readonly initialisation parameter set to the non-default value of false) may need additional configuration to fully mitigate CVE-2024-50379 depending on which version of Java they are using with Tomcat: - running on Java 8 or Java 11: the system property sun.io.useCanonCaches must be explicitly set to false (it defaults to true) - running on Java 17: the system property sun.io.useCanonCaches, if set, must be set to false (it defaults to false) - running on Java 21 onw...
CVE-2024-56337
Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.0.97. The following versions were EOL at the time the CVE was created but are known to be affected: 8.5.0 though 8.5.100. Other, older, EOL versions may also be affected. The mitigation for CVE-2024-50379 was incomplete. Users running Tomcat on a case insensitive file system with the default servlet write enabled (readonly initialisation parameter set to the non-default value of false) may need additional configuration to fully mitigate CVE-2024-50379 depending on which version of Java they are using with Tomcat: - running on Java 8 or Java 11: the system property sun.io.useCanonCaches must be explicitly set to false (it defaults to true) - running on Java 17: the system property sun.io.useCanonCaches, if set, must be set to false (it defaults to false) - running on Java 21 on
CVE-2024-56337
Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apa ...
GHSA-27hp-xhwr-wr2m
Apache Tomcat Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability
BDU:2024-11586
Уязвимость сервера приложений Apache Tomcat, связанная с ошибками синхронизации при использовании общего ресурса, позволяющая нарушителю выполнить произвольный код
SUSE-SU-2025:1126-1
Security update for tomcat
SUSE-SU-2025:1024-1
Security update for tomcat10
ROS-20250226-07
Уязвимость tomcat
RLSA-2025:11333
Important: tomcat security update
RLSA-2025:11332
Important: tomcat9 security update
ELSA-2025-11335
ELSA-2025-11335: tomcat security update (IMPORTANT)
ELSA-2025-11333
ELSA-2025-11333: tomcat security update (IMPORTANT)
ELSA-2025-11332
ELSA-2025-11332: tomcat9 security update (IMPORTANT)
SUSE-SU-2025:0058-1
Security update for tomcat
SUSE-SU-2025:0033-1
Security update for tomcat10
Уязвимостей на страницу
Уязвимость  | CVSS  | EPSS  | Опубликовано  | |
|---|---|---|---|---|
CVE-2024-56337 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.0.97. The following versions were EOL at the time the CVE was created but are known to be affected: 8.5.0 though 8.5.100. Other, older, EOL versions may also be affected. The mitigation for CVE-2024-50379 was incomplete. Users running Tomcat on a case insensitive file system with the default servlet write enabled (readonly initialisation parameter set to the non-default value of false) may need additional configuration to fully mitigate CVE-2024-50379 depending on which version of Java they are using with Tomcat: - running on Java 8 or Java 11: the system property sun.io.useCanonCaches must be explicitly set to false (it defaults to true) - running on Java 17: the system property sun.io.useCanonCaches, if set, must be set to false (it defaults to false) - running on Java 21 onward...  | CVSS3: 9.8  | 17% Средний | 11 месяцев назад | |
CVE-2024-56337 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.0.97. The following versions were EOL at the time the CVE was created but are known to be affected: 8.5.0 though 8.5.100. Other, older, EOL versions may also be affected. The mitigation for CVE-2024-50379 was incomplete. Users running Tomcat on a case insensitive file system with the default servlet write enabled (readonly initialisation parameter set to the non-default value of false) may need additional configuration to fully mitigate CVE-2024-50379 depending on which version of Java they are using with Tomcat: - running on Java 8 or Java 11: the system property sun.io.useCanonCaches must be explicitly set to false (it defaults to true) - running on Java 17: the system property sun.io.useCanonCaches, if set, must be set to false (it defaults to false) - running on Java 21 onw...  | CVSS3: 8.1  | 17% Средний | 11 месяцев назад | |
CVE-2024-56337 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.0.97. The following versions were EOL at the time the CVE was created but are known to be affected: 8.5.0 though 8.5.100. Other, older, EOL versions may also be affected. The mitigation for CVE-2024-50379 was incomplete. Users running Tomcat on a case insensitive file system with the default servlet write enabled (readonly initialisation parameter set to the non-default value of false) may need additional configuration to fully mitigate CVE-2024-50379 depending on which version of Java they are using with Tomcat: - running on Java 8 or Java 11: the system property sun.io.useCanonCaches must be explicitly set to false (it defaults to true) - running on Java 17: the system property sun.io.useCanonCaches, if set, must be set to false (it defaults to false) - running on Java 21 on  | CVSS3: 9.8  | 17% Средний | 11 месяцев назад | |
CVE-2024-56337 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apa ...  | CVSS3: 9.8  | 17% Средний | 11 месяцев назад | |
GHSA-27hp-xhwr-wr2m Apache Tomcat Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability  | 17% Средний | 11 месяцев назад | ||
BDU:2024-11586 Уязвимость сервера приложений Apache Tomcat, связанная с ошибками синхронизации при использовании общего ресурса, позволяющая нарушителю выполнить произвольный код  | CVSS3: 4.6  | 17% Средний | 11 месяцев назад | |
SUSE-SU-2025:1126-1 Security update for tomcat  | 7 месяцев назад | |||
SUSE-SU-2025:1024-1 Security update for tomcat10  | 7 месяцев назад | |||
ROS-20250226-07 Уязвимость tomcat  | CVSS3: 4.6  | 17% Средний | 8 месяцев назад | |
RLSA-2025:11333 Important: tomcat security update  | 3 месяца назад | |||
RLSA-2025:11332 Important: tomcat9 security update  | около 1 месяца назад | |||
ELSA-2025-11335 ELSA-2025-11335: tomcat security update (IMPORTANT)  | 4 месяца назад | |||
ELSA-2025-11333 ELSA-2025-11333: tomcat security update (IMPORTANT)  | 4 месяца назад | |||
ELSA-2025-11332 ELSA-2025-11332: tomcat9 security update (IMPORTANT)  | 4 месяца назад | |||
SUSE-SU-2025:0058-1 Security update for tomcat  | 9 месяцев назад | |||
SUSE-SU-2025:0033-1 Security update for tomcat10  | 9 месяцев назад | 
Уязвимостей на страницу