Oval Definition:oval:org.cisecurity:def:1589
Revision Date:2017-01-13Version:6
Title:DSA-3720-1 -- tomcat8 -- security update
Description:Multiple security vulnerabilities have been discovered in the Tomcat servlet and JSP engine, which may result in possible timing attacks to determine valid user names, bypass of the SecurityManager, disclosure of system properties, unrestricted access to global resources, arbitrary file overwrites, and potentially escalation of privileges.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2016-0762
CVE-2016-5018
CVE-2016-6794
CVE-2016-6796
CVE-2016-6797
DSA-3720-1
Platform(s):Debian 8
Product(s):tomcat8
Definition Synopsis
  • Debian 8 is installed
  • AND tomcat8 is earlier than 0:8.0.14-1+deb8u4
  • BACK