[RHSA-2023:5929] tomcat security update

Severity Important
Affected Packages 8
CVEs 1

Apache Tomcat is a servlet container for the Java Servlet and JavaServer Pages (JSP) technologies.

Security Fix(es):

  • HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack) (CVE-2023-44487)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

ID
RHSA-2023:5929
Severity
important
URL
https://access.redhat.com/errata/RHSA-2023:5929
Published
2023-10-19T00:00:00
(11 months ago)
Modified
2023-10-19T00:00:00
(11 months ago)
Rights
Copyright 2023 Red Hat, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/redhat/tomcat?distro=redhat-9.2 redhat tomcat < 9.0.62-11.el9_2.3 redhat-9.2
Affected pkg:rpm/redhat/tomcat-webapps?distro=redhat-9.2 redhat tomcat-webapps < 9.0.62-11.el9_2.3 redhat-9.2
Affected pkg:rpm/redhat/tomcat-servlet-4.0-api?distro=redhat-9.2 redhat tomcat-servlet-4.0-api < 9.0.62-11.el9_2.3 redhat-9.2
Affected pkg:rpm/redhat/tomcat-lib?distro=redhat-9.2 redhat tomcat-lib < 9.0.62-11.el9_2.3 redhat-9.2
Affected pkg:rpm/redhat/tomcat-jsp-2.3-api?distro=redhat-9.2 redhat tomcat-jsp-2.3-api < 9.0.62-11.el9_2.3 redhat-9.2
Affected pkg:rpm/redhat/tomcat-el-3.0-api?distro=redhat-9.2 redhat tomcat-el-3.0-api < 9.0.62-11.el9_2.3 redhat-9.2
Affected pkg:rpm/redhat/tomcat-docs-webapp?distro=redhat-9.2 redhat tomcat-docs-webapp < 9.0.62-11.el9_2.3 redhat-9.2
Affected pkg:rpm/redhat/tomcat-admin-webapps?distro=redhat-9.2 redhat tomcat-admin-webapps < 9.0.62-11.el9_2.3 redhat-9.2
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...