Revision Date: | 2021-11-16 | Version: | 1 |
Title: | Security update for tomcat (Important) |
Description: |
This update for tomcat fixes the following issues:
- CVE-2021-30640: Escape parameters in JNDI Realm queries (bsc#1188279). - CVE-2021-33037: Process T-E header from both HTTP 1.0 and HTTP 1.1. clients (bsc#1188278). - CVE-2021-41079: Fixed a denial of service caused by an unexpected TLS packet (bsc#1190558).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1188278 1188279 1190558 CVE-2017-11661 CVE-2017-11664 CVE-2021-30640 CVE-2021-33037 CVE-2021-41079 SUSE-SU-2021:3669-1
|
Platform(s): | openSUSE Tumbleweed SUSE Linux Enterprise Server 15 SP1-BCL
| Product(s): | |
Definition Synopsis |
openSUSE Tumbleweed is installed AND Package Information
libWildMidi2-0.4.4-1.3 is installed
OR wildmidi-0.4.4-1.3 is installed
OR wildmidi-devel-0.4.4-1.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 15 SP1-BCL is installed
AND Package Information
tomcat-9.0.36-4.63.1 is installed
OR tomcat-admin-webapps-9.0.36-4.63.1 is installed
OR tomcat-el-3_0-api-9.0.36-4.63.1 is installed
OR tomcat-jsp-2_3-api-9.0.36-4.63.1 is installed
OR tomcat-lib-9.0.36-4.63.1 is installed
OR tomcat-servlet-4_0-api-9.0.36-4.63.1 is installed
OR tomcat-webapps-9.0.36-4.63.1 is installed
|