ELSA-2017-3081

ELSA-2017-3081 - tomcat security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2017-10-30

Description


[0:7.0.76-3]
- Resolves: rhbz#1498344 CVE-2017-12615 CVE-2017-12617 tomcat: various flaws
- Resolves: rhbz#1495654 CVE-2017-7674 tomcat: Vary header not added by CORS filter leading to cache poisoning
- Resolves: rhbz#1470596 CVE-2017-5647 Add follow up revision


Related CVEs


CVE-2017-12615
CVE-2017-12617
CVE-2017-5647
CVE-2017-7674

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) tomcat-7.0.76-3.el7_4.src.rpme4f6da8846b722e8ef8ff9785d5e9e96ELSA-2020-5020
tomcat-7.0.76-3.el7_4.noarch.rpm4330be334d55393abf6d98a1976b229dELSA-2020-5020
tomcat-admin-webapps-7.0.76-3.el7_4.noarch.rpm3d994afde6cd82067c4cd1eed4e75d11ELSA-2020-5020
tomcat-docs-webapp-7.0.76-3.el7_4.noarch.rpmb3ed273974249cc602cdd7c223f73634ELSA-2020-5020
tomcat-el-2.2-api-7.0.76-3.el7_4.noarch.rpm21cd7f52cd9ecbe3146fe4a25d9e0612ELSA-2020-5020
tomcat-javadoc-7.0.76-3.el7_4.noarch.rpm7023dba7f77a16b6e140980381e2cd87ELSA-2020-5020
tomcat-jsp-2.2-api-7.0.76-3.el7_4.noarch.rpmbc14956cc7bf6eb7eb79c990672150edELSA-2020-5020
tomcat-jsvc-7.0.76-3.el7_4.noarch.rpmdddbec1ae3c81eb87728a005407aca15ELSA-2020-5020
tomcat-lib-7.0.76-3.el7_4.noarch.rpm39a0b2629fd82820796d7bad36e50a17ELSA-2020-5020
tomcat-servlet-3.0-api-7.0.76-3.el7_4.noarch.rpm4e8357f3a3836a2f0e51dc7abf2054bdELSA-2020-5020
tomcat-webapps-7.0.76-3.el7_4.noarch.rpmc76b9567fee378d6f1003e669aac4aadELSA-2020-5020
Oracle Linux 7 (x86_64) tomcat-7.0.76-3.el7_4.src.rpme4f6da8846b722e8ef8ff9785d5e9e96ELSA-2020-5020
tomcat-7.0.76-3.el7_4.noarch.rpm4330be334d55393abf6d98a1976b229dELSA-2020-5020
tomcat-admin-webapps-7.0.76-3.el7_4.noarch.rpm3d994afde6cd82067c4cd1eed4e75d11ELSA-2020-5020
tomcat-docs-webapp-7.0.76-3.el7_4.noarch.rpmb3ed273974249cc602cdd7c223f73634ELSA-2020-5020
tomcat-el-2.2-api-7.0.76-3.el7_4.noarch.rpm21cd7f52cd9ecbe3146fe4a25d9e0612ELSA-2020-5020
tomcat-javadoc-7.0.76-3.el7_4.noarch.rpm7023dba7f77a16b6e140980381e2cd87ELSA-2020-5020
tomcat-jsp-2.2-api-7.0.76-3.el7_4.noarch.rpmbc14956cc7bf6eb7eb79c990672150edELSA-2020-5020
tomcat-jsvc-7.0.76-3.el7_4.noarch.rpmdddbec1ae3c81eb87728a005407aca15ELSA-2020-5020
tomcat-lib-7.0.76-3.el7_4.noarch.rpm39a0b2629fd82820796d7bad36e50a17ELSA-2020-5020
tomcat-servlet-3.0-api-7.0.76-3.el7_4.noarch.rpm4e8357f3a3836a2f0e51dc7abf2054bdELSA-2020-5020
tomcat-webapps-7.0.76-3.el7_4.noarch.rpmc76b9567fee378d6f1003e669aac4aadELSA-2020-5020



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete