Revision Date: | 2017-03-14 | Version: | 1 | Title: | CVE-2016-8747 on Ubuntu 16.04 LTS (xenial) - medium. | Description: | An information disclosure issue was discovered in Apache Tomcat 8.5.7 to 8.5.9 and 9.0.0.M11 to 9.0.0.M15 in reverse-proxy configurations. Http11InputBuffer.java allows remote attackers to read data that was intended to be associated with a different request.
| Family: | unix | Class: | vulnerability | Status: | | Reference(s): | CVE-2016-8747
| Platform(s): | Ubuntu 16.04 LTS
| Product(s): | | Definition Synopsis | Ubuntu 16.04 LTS (xenial) is installed. AND Package Information
NOT libservlet3.1-java package in xenial, while related to the CVE in some way, is not affected.
OR NOT libtomcat8-java package in xenial, while related to the CVE in some way, is not affected.
OR NOT tomcat8 package in xenial, while related to the CVE in some way, is not affected.
OR NOT tomcat8-admin package in xenial, while related to the CVE in some way, is not affected.
OR NOT tomcat8-common package in xenial, while related to the CVE in some way, is not affected.
OR NOT tomcat8-examples package in xenial, while related to the CVE in some way, is not affected.
OR NOT tomcat8-user package in xenial, while related to the CVE in some way, is not affected.
|
|