Oval Definition:oval:org.cisecurity:def:1583
Revision Date:2017-01-13Version:6
Title:DSA-3721-1 -- tomcat7 -- security update
Description:Multiple security vulnerabilities have been discovered in the Tomcat servlet and JSP engine, which may result in possible timing attacks to determine valid user names, bypass of the SecurityManager, disclosure of system properties, unrestricted access to global resources, arbitrary file overwrites, and potentially escalation of privileges.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2016-0762
CVE-2016-5018
CVE-2016-6794
CVE-2016-6796
CVE-2016-6797
DSA-3721-1
Platform(s):Debian 8
Product(s):tomcat7
Definition Synopsis
  • Debian 8 is installed
  • AND tomcat7 is earlier than 0:7.0.56-3+deb8u5
  • BACK