ELSA-2014-0827

ELSA-2014-0827 - tomcat security update

Type:SECURITY
Severity:MODERATE
Release Date:2014-07-23

Description


[0:7.0.42-6]
- Resolves: CVE-2014-0099 Fix possible overflow when parsing
- long values from byte array
- Resolves: CVE-2014-0096 Information discloser process XSLT
- files not subject to same constraint running under
- java security manager
- Resolves: CVE-2014-0075 Avoid overflow in ChunkedInputFilter.


Related CVEs


CVE-2014-0075
CVE-2014-0096
CVE-2014-0099

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) tomcat-7.0.42-6.el7_0.src.rpm83a35af68193f3d798c9299a0be340aaELSA-2020-5020
tomcat-7.0.42-6.el7_0.noarch.rpm96589d27b066fb70f444369738095febELSA-2020-5020
tomcat-admin-webapps-7.0.42-6.el7_0.noarch.rpm048a70c0c1369d67995b80a1abc7c401ELSA-2020-5020
tomcat-docs-webapp-7.0.42-6.el7_0.noarch.rpmf6cb07285a28379ff855e8c5fe61649aELSA-2020-5020
tomcat-el-2.2-api-7.0.42-6.el7_0.noarch.rpmda4f5f57624296c7f9f00b1aba6c0be9ELSA-2020-5020
tomcat-javadoc-7.0.42-6.el7_0.noarch.rpmd0dc14c38e203d794acca8c7569ac890ELSA-2020-5020
tomcat-jsp-2.2-api-7.0.42-6.el7_0.noarch.rpmebd77c21707c083e6ee2c94c7160708dELSA-2020-5020
tomcat-jsvc-7.0.42-6.el7_0.noarch.rpm625c53497c093baaeb8eee4893773823ELSA-2020-5020
tomcat-lib-7.0.42-6.el7_0.noarch.rpm5be9c90f7737ae4660b38fec86f4070fELSA-2020-5020
tomcat-servlet-3.0-api-7.0.42-6.el7_0.noarch.rpm45fa0820f938bae6472b54eebb267e6eELSA-2020-5020
tomcat-webapps-7.0.42-6.el7_0.noarch.rpm16222e11167a04cab71844778d5404c4ELSA-2020-5020



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete