ELSA-2017-0527

ELSA-2017-0527 - tomcat6 security update

Type:SECURITY
Severity:MODERATE
Release Date:2017-03-15

Description


[0:6.0.24-105]
- Related: rhbz#1402664 CVE-2016-6816 Adding system property from asfbz-60594 to allow use of some un-encoded characters
- Related: rhbz#1402664 CVE-2016-6816 Resolving a security regression (2017-6056) caused by CVE-2016-6816

[0:6.0.24-104]
- Related: rhbz#1402664 build. reverting ExcludeArch to fix composes

[0:6.0.24-102]
- Resolves: rhbz#1413589 CVE-2016-8745 tomcat6: tomcat: information disclosure due to incorrect Processor sharing
- Resolves: rhbz#1402664 CVE-2016-6816 tomcat6: tomcat: HTTP Request smuggling vulnerability due to permitting invalid character in HTTP requests


Related CVEs


CVE-2016-6816
CVE-2016-8745

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (i386) tomcat6-6.0.24-105.el6_8.src.rpmdcc431da05ca10f27abfa6333303ec6bELSA-2020-2529
tomcat6-6.0.24-105.el6_8.noarch.rpm56ee04418619f503ef148826030d415bELSA-2020-2529
tomcat6-admin-webapps-6.0.24-105.el6_8.noarch.rpm9cdaec1edc4906c4ea93ab45cb1f9eeeELSA-2020-2529
tomcat6-docs-webapp-6.0.24-105.el6_8.noarch.rpm9249facfe0fb08b56676dfb49963895bELSA-2020-2529
tomcat6-el-2.1-api-6.0.24-105.el6_8.noarch.rpmbd7815cab668c094970f4a9c17ed2eadELSA-2020-2529
tomcat6-javadoc-6.0.24-105.el6_8.noarch.rpmc8de817b468086a9f981074e7829a11fELSA-2020-2529
tomcat6-jsp-2.1-api-6.0.24-105.el6_8.noarch.rpmbf6617efc85482a5feff0ae6bc412243ELSA-2020-2529
tomcat6-lib-6.0.24-105.el6_8.noarch.rpmb26f5c2aefa161254c4d9efeb49c6081ELSA-2020-2529
tomcat6-servlet-2.5-api-6.0.24-105.el6_8.noarch.rpmae8c3608d23599425d93f42d176a62a9ELSA-2020-2529
tomcat6-webapps-6.0.24-105.el6_8.noarch.rpmd6c617c2007facb5e8ab209a8f82170bELSA-2020-2529
Oracle Linux 6 (x86_64) tomcat6-6.0.24-105.el6_8.src.rpmdcc431da05ca10f27abfa6333303ec6bELSA-2020-2529
tomcat6-6.0.24-105.el6_8.noarch.rpm56ee04418619f503ef148826030d415bELSA-2020-2529
tomcat6-admin-webapps-6.0.24-105.el6_8.noarch.rpm9cdaec1edc4906c4ea93ab45cb1f9eeeELSA-2020-2529
tomcat6-docs-webapp-6.0.24-105.el6_8.noarch.rpm9249facfe0fb08b56676dfb49963895bELSA-2020-2529
tomcat6-el-2.1-api-6.0.24-105.el6_8.noarch.rpmbd7815cab668c094970f4a9c17ed2eadELSA-2020-2529
tomcat6-javadoc-6.0.24-105.el6_8.noarch.rpmc8de817b468086a9f981074e7829a11fELSA-2020-2529
tomcat6-jsp-2.1-api-6.0.24-105.el6_8.noarch.rpmbf6617efc85482a5feff0ae6bc412243ELSA-2020-2529
tomcat6-lib-6.0.24-105.el6_8.noarch.rpmb26f5c2aefa161254c4d9efeb49c6081ELSA-2020-2529
tomcat6-servlet-2.5-api-6.0.24-105.el6_8.noarch.rpmae8c3608d23599425d93f42d176a62a9ELSA-2020-2529
tomcat6-webapps-6.0.24-105.el6_8.noarch.rpmd6c617c2007facb5e8ab209a8f82170bELSA-2020-2529



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete