Oval Definition:oval:org.opensuse.security:def:20083271
Revision Date:2017-09-27Version:1
Title:CVE-2008-3271
Description:

Apache Tomcat 5.5.0 and 4.1.0 through 4.1.31 allows remote attackers to bypass an IP address restriction and obtain sensitive information via a request that is processed concurrently with another request but in a different thread, leading to an instance-variable overwrite associated with a "synchronization problem" and lack of thread safety, and related to RemoteFilterValve, RemoteAddrValve, and RemoteHostValve.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2008-3271
Platform(s):Novell Linux Desktop 9 SDK for x86
Novell Linux Desktop 9 SDK for x86_64
Open Enterprise Server
SUSE Linux Enterprise SDK 10 SP2
Product(s):
Definition Synopsis
  • sles10-sp2-sdk is installed
  • AND Package Information
  • tomcat5-admin-webapps less than 5.0.30-27.32
  • OR tomcat5-webapps less than 5.0.30-27.32
  • OR tomcat5 less than 5.0.30-27.32
  • BACK