ELSA-2017-3081

ELSA-2017-3081 - tomcat security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2017-10-30

Description


[0:7.0.76-3]
- Resolves: rhbz#1498344 CVE-2017-12615 CVE-2017-12617 tomcat: various flaws
- Resolves: rhbz#1495654 CVE-2017-7674 tomcat: Vary header not added by CORS filter leading to cache poisoning
- Resolves: rhbz#1470596 CVE-2017-5647 Add follow up revision


Related CVEs


CVE-2017-12615
CVE-2017-12617
CVE-2017-7674
CVE-2017-5647

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (aarch64) tomcat-7.0.76-3.el7_4.src.rpm7ade2e847ea99096bca3cef936df936b3c361e108d216ff1a088979059f7bfffELSA-2020-5020ol7_aarch64_latest
tomcat-7.0.76-3.el7_4.src.rpm7ade2e847ea99096bca3cef936df936b3c361e108d216ff1a088979059f7bfffELSA-2020-5020ol7_aarch64_optional_latest
tomcat-7.0.76-3.el7_4.noarch.rpm95e02033a9549e0cb80c85b6f8b1a827e30ae3f22f3c6ee981b99bcd26cf551fELSA-2020-5020ol7_aarch64_latest
tomcat-admin-webapps-7.0.76-3.el7_4.noarch.rpm046cb5616604ac43f20c4995b8ec6f990bf56592e0d9c1e2cf60c418ced3b23bELSA-2020-5020ol7_aarch64_latest
tomcat-docs-webapp-7.0.76-3.el7_4.noarch.rpm1a76d81f189f31bd7522e4d15f48f1f098fcaf091cc8ea416a4e214be944b33fELSA-2020-5020ol7_aarch64_optional_latest
tomcat-el-2.2-api-7.0.76-3.el7_4.noarch.rpmbbf1f000cd7ffa60e0485aea95a187893d0eaa6d3b714552c4767ade729e675dELSA-2020-5020ol7_aarch64_latest
tomcat-javadoc-7.0.76-3.el7_4.noarch.rpmc6ea422376a64d62ba2fcf10723700e3ecda1a27773b78798bd49c5ab8605c67ELSA-2020-5020ol7_aarch64_optional_latest
tomcat-jsp-2.2-api-7.0.76-3.el7_4.noarch.rpm2a0247f56c4d15e0a7e3323c6a1535622162a20467e02bd9df63b6ed93f07fb0ELSA-2020-5020ol7_aarch64_latest
tomcat-jsvc-7.0.76-3.el7_4.noarch.rpmbc5d71db7d6a91d8690ddcdb10f2f73f987c13da5b20dde1691293f3a8b55c08ELSA-2020-5020ol7_aarch64_optional_latest
tomcat-lib-7.0.76-3.el7_4.noarch.rpmd8b65df950a01b04ca8ab54bb24a54fb18abe1741788da77837b681082cab690ELSA-2020-5020ol7_aarch64_latest
tomcat-servlet-3.0-api-7.0.76-3.el7_4.noarch.rpmc7bbb9dc2861538c8eb56ff54dcfaa22a28ab1317589e29b6fab9faadfe143c7ELSA-2020-5020ol7_aarch64_latest
tomcat-webapps-7.0.76-3.el7_4.noarch.rpm3466ce88dc803b01ac1ec5f4a25a075a3d33809cef884b28ee086c161a7d9033ELSA-2020-5020ol7_aarch64_latest
Oracle Linux 7 (x86_64) tomcat-7.0.76-3.el7_4.src.rpm7ade2e847ea99096bca3cef936df936b3c361e108d216ff1a088979059f7bfffELSA-2020-5020ol7_x86_64_latest_archive
tomcat-7.0.76-3.el7_4.src.rpm7ade2e847ea99096bca3cef936df936b3c361e108d216ff1a088979059f7bfffELSA-2020-5020ol7_x86_64_optional_archive
tomcat-7.0.76-3.el7_4.src.rpm7ade2e847ea99096bca3cef936df936b3c361e108d216ff1a088979059f7bfffELSA-2020-5020ol7_x86_64_u4_patch
tomcat-7.0.76-3.el7_4.noarch.rpm95e02033a9549e0cb80c85b6f8b1a827e30ae3f22f3c6ee981b99bcd26cf551fELSA-2020-5020ol7_x86_64_latest_archive
tomcat-7.0.76-3.el7_4.noarch.rpm95e02033a9549e0cb80c85b6f8b1a827e30ae3f22f3c6ee981b99bcd26cf551fELSA-2020-5020ol7_x86_64_u4_patch
tomcat-admin-webapps-7.0.76-3.el7_4.noarch.rpm046cb5616604ac43f20c4995b8ec6f990bf56592e0d9c1e2cf60c418ced3b23bELSA-2020-5020ol7_x86_64_latest_archive
tomcat-admin-webapps-7.0.76-3.el7_4.noarch.rpm046cb5616604ac43f20c4995b8ec6f990bf56592e0d9c1e2cf60c418ced3b23bELSA-2020-5020ol7_x86_64_u4_patch
tomcat-docs-webapp-7.0.76-3.el7_4.noarch.rpm1a76d81f189f31bd7522e4d15f48f1f098fcaf091cc8ea416a4e214be944b33fELSA-2020-5020ol7_x86_64_optional_archive
tomcat-el-2.2-api-7.0.76-3.el7_4.noarch.rpmbbf1f000cd7ffa60e0485aea95a187893d0eaa6d3b714552c4767ade729e675dELSA-2020-5020ol7_x86_64_latest_archive
tomcat-el-2.2-api-7.0.76-3.el7_4.noarch.rpmbbf1f000cd7ffa60e0485aea95a187893d0eaa6d3b714552c4767ade729e675dELSA-2020-5020ol7_x86_64_u4_patch
tomcat-javadoc-7.0.76-3.el7_4.noarch.rpmc6ea422376a64d62ba2fcf10723700e3ecda1a27773b78798bd49c5ab8605c67ELSA-2020-5020ol7_x86_64_optional_archive
tomcat-jsp-2.2-api-7.0.76-3.el7_4.noarch.rpm2a0247f56c4d15e0a7e3323c6a1535622162a20467e02bd9df63b6ed93f07fb0ELSA-2020-5020ol7_x86_64_latest_archive
tomcat-jsp-2.2-api-7.0.76-3.el7_4.noarch.rpm2a0247f56c4d15e0a7e3323c6a1535622162a20467e02bd9df63b6ed93f07fb0ELSA-2020-5020ol7_x86_64_u4_patch
tomcat-jsvc-7.0.76-3.el7_4.noarch.rpmbc5d71db7d6a91d8690ddcdb10f2f73f987c13da5b20dde1691293f3a8b55c08ELSA-2020-5020ol7_x86_64_optional_archive
tomcat-lib-7.0.76-3.el7_4.noarch.rpmd8b65df950a01b04ca8ab54bb24a54fb18abe1741788da77837b681082cab690ELSA-2020-5020ol7_x86_64_latest_archive
tomcat-lib-7.0.76-3.el7_4.noarch.rpmd8b65df950a01b04ca8ab54bb24a54fb18abe1741788da77837b681082cab690ELSA-2020-5020ol7_x86_64_u4_patch
tomcat-servlet-3.0-api-7.0.76-3.el7_4.noarch.rpmc7bbb9dc2861538c8eb56ff54dcfaa22a28ab1317589e29b6fab9faadfe143c7ELSA-2020-5020ol7_x86_64_latest_archive
tomcat-servlet-3.0-api-7.0.76-3.el7_4.noarch.rpmc7bbb9dc2861538c8eb56ff54dcfaa22a28ab1317589e29b6fab9faadfe143c7ELSA-2020-5020ol7_x86_64_u4_patch
tomcat-webapps-7.0.76-3.el7_4.noarch.rpm3466ce88dc803b01ac1ec5f4a25a075a3d33809cef884b28ee086c161a7d9033ELSA-2020-5020ol7_x86_64_latest_archive
tomcat-webapps-7.0.76-3.el7_4.noarch.rpm3466ce88dc803b01ac1ec5f4a25a075a3d33809cef884b28ee086c161a7d9033ELSA-2020-5020ol7_x86_64_u4_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete