You are here
Home > Preporuke > Sigurnosni nedostatak programskog paketa tomcat8

Sigurnosni nedostatak programskog paketa tomcat8

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LUB

==========================================================================
Ubuntu Security Notice USN-3027-1
July 06, 2016

tomcat8 vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

– Ubuntu 16.04 LTS

Summary:

Tomcat could be made to hang if it received specially crafted network
traffic.

Software Description:
– tomcat8: Servlet and JSP engine

Details:

It was discovered that the Tomcat Fileupload library incorrectly handled
certain upload requests. A remote attacker could possibly use this issue to
cause a denial of service.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 16.04 LTS:
tomcat8 8.0.32-1ubuntu1.1

In general, a standard system update will make all the necessary changes.

References:
http://www.ubuntu.com/usn/usn-3027-1
CVE-2016-3092

Package Information:
https://launchpad.net/ubuntu/+source/tomcat8/8.0.32-1ubuntu1.1

—–BEGIN PGP SIGNATURE—–
Version: GnuPG v2
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=XWaZ
—–END PGP SIGNATURE—–

AutorMarijo Plepelic
Cert idNCERT-REF-2016-07-0013-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
Izvorhttp://www.adobe.com/
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa qemu

Otkriveni su sigurnosni nedostaci u programskom paketu qemu za openSUSE Leap 42.1. Zahvaćene su razne komponente, a ovisno o tipu...

Close