Oval Definition:oval:org.opensuse.security:def:53436
Revision Date:2020-12-01Version:1
Title:Security update for tomcat (Important)
Description:

This update for tomcat fixes the following issues:

Tomcat was updated to 9.0.36 See changelog at

- CVE-2020-11996: Fixed an issue which by sending a specially crafted sequence of HTTP/2 requests could have triggered high CPU usage for several seconds making potentially the server unresponsive (bsc#1173389).
Family:unixClass:patch
Status:Reference(s):1014863
1018808
1038231
1052916
1173376
1173377
1173378
1173380
1173389
887877
909695
926826
926974
928131
936032
943380
946148
952539
956631
959495
970072
970073
984695
986630
CVE-2010-0405
CVE-2010-2761
CVE-2010-4410
CVE-2010-4411
CVE-2010-4777
CVE-2011-0020
CVE-2011-0064
CVE-2011-1946
CVE-2013-0240
CVE-2013-1799
CVE-2013-1984
CVE-2013-1995
CVE-2013-1998
CVE-2014-4975
CVE-2015-1855
CVE-2015-3900
CVE-2015-7551
CVE-2015-8370
CVE-2015-8853
CVE-2016-1238
CVE-2016-1285
CVE-2016-1286
CVE-2016-2339
CVE-2016-2381
CVE-2016-4122
CVE-2016-4123
CVE-2016-4124
CVE-2016-4125
CVE-2016-4127
CVE-2016-4128
CVE-2016-4129
CVE-2016-4130
CVE-2016-4131
CVE-2016-4132
CVE-2016-4133
CVE-2016-4134
CVE-2016-4135
CVE-2016-4136
CVE-2016-4137
CVE-2016-4138
CVE-2016-4139
CVE-2016-4140
CVE-2016-4141
CVE-2016-4142
CVE-2016-4143
CVE-2016-4144
CVE-2016-4145
CVE-2016-4146
CVE-2016-4147
CVE-2016-4148
CVE-2016-4149
CVE-2016-4150
CVE-2016-4151
CVE-2016-4152
CVE-2016-4153
CVE-2016-4154
CVE-2016-4155
CVE-2016-4156
CVE-2016-4166
CVE-2016-4171
CVE-2016-6185
CVE-2016-7945
CVE-2016-7946
CVE-2017-2885
CVE-2017-7494
CVE-2020-11996
CVE-2020-15563
CVE-2020-15565
CVE-2020-15566
CVE-2020-15567
SUSE-SU-2015:2056-1
SUSE-SU-2015:2399-1
SUSE-SU-2016:0759-1
SUSE-SU-2016:1613-1
SUSE-SU-2017:1067-1
SUSE-SU-2017:1392-1
SUSE-SU-2017:1393-1
SUSE-SU-2017:2129-1
SUSE-SU-2020:1962-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for Web Scripting 15 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 15-LTSS
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND cups-filters-1.20.3-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • chromedriver-75.0.3770.80-lp151.2.6 is installed
  • OR chromium-75.0.3770.80-lp151.2.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • libldb1-3.6.3-0.24 is installed
  • OR libldb1-32bit-3.6.3-0.24 is installed
  • OR libsmbclient0-3.6.3-0.24 is installed
  • OR libsmbclient0-32bit-3.6.3-0.24 is installed
  • OR libtalloc2-3.6.3-0.24 is installed
  • OR libtalloc2-32bit-3.6.3-0.24 is installed
  • OR libtdb1-3.6.3-0.24 is installed
  • OR libtdb1-32bit-3.6.3-0.24 is installed
  • OR libtevent0-3.6.3-0.24 is installed
  • OR libtevent0-32bit-3.6.3-0.24 is installed
  • OR libwbclient0-3.6.3-0.24 is installed
  • OR libwbclient0-32bit-3.6.3-0.24 is installed
  • OR samba-3.6.3-0.24 is installed
  • OR samba-32bit-3.6.3-0.24 is installed
  • OR samba-client-3.6.3-0.24 is installed
  • OR samba-client-32bit-3.6.3-0.24 is installed
  • OR samba-doc-3.6.3-0.24 is installed
  • OR samba-krb-printing-3.6.3-0.24 is installed
  • OR samba-winbind-3.6.3-0.24 is installed
  • OR samba-winbind-32bit-3.6.3-0.24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • cpio-2.9-75.78 is installed
  • OR cpio-lang-2.9-75.78 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • gpg2-2.0.9-25.33.41 is installed
  • OR gpg2-lang-2.0.9-25.33.41 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • grub2-2.02~beta2-56.9 is installed
  • OR grub2-i386-pc-2.02~beta2-56.9 is installed
  • OR grub2-snapper-plugin-2.02~beta2-56.9 is installed
  • OR grub2-x86_64-efi-2.02~beta2-56.9 is installed
  • OR grub2-x86_64-xen-2.02~beta2-56.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • bind-9.9.6P1-38 is installed
  • OR bind-libs-9.9.6P1-38 is installed
  • OR bind-libs-32bit-9.9.6P1-38 is installed
  • OR bind-utils-9.9.6P1-38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • libsoup-2.54.1-5.3 is installed
  • OR libsoup-2_4-1-2.54.1-5.3 is installed
  • OR libsoup-2_4-1-32bit-2.54.1-5.3 is installed
  • OR libsoup-lang-2.54.1-5.3 is installed
  • OR typelib-1_0-Soup-2_4-2.54.1-5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • gnome-online-accounts-3.20.5-9 is installed
  • OR gnome-online-accounts-lang-3.20.5-9 is installed
  • OR libgoa-1_0-0-3.20.5-9 is installed
  • OR libgoa-1_0-0-32bit-3.20.5-9 is installed
  • OR libgoa-backend-1_0-1-3.20.5-9 is installed
  • OR typelib-1_0-Goa-1_0-3.20.5-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • bzip2-1.0.6-29 is installed
  • OR libbz2-1-1.0.6-29 is installed
  • OR libbz2-1-32bit-1.0.6-29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 SP1 is installed
  • AND Package Information
  • tomcat-9.0.36-4.38 is installed
  • OR tomcat-admin-webapps-9.0.36-4.38 is installed
  • OR tomcat-el-3_0-api-9.0.36-4.38 is installed
  • OR tomcat-jsp-2_3-api-9.0.36-4.38 is installed
  • OR tomcat-lib-9.0.36-4.38 is installed
  • OR tomcat-servlet-4_0-api-9.0.36-4.38 is installed
  • OR tomcat-webapps-9.0.36-4.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • curl-7.37.0-15 is installed
  • OR libcurl4-7.37.0-15 is installed
  • OR libcurl4-32bit-7.37.0-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_69-60_64_35-default-3-3 is installed
  • OR kgraft-patch-3_12_69-60_64_35-xen-3-3 is installed
  • OR kgraft-patch-SLE12-SP1_Update_14-3-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND yast2-users-3.1.57-16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • MozillaFirefox-52.8.1esr-109.34 is installed
  • OR MozillaFirefox-devel-52.8.1esr-109.34 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • xen-4.7.6_04-43.39 is installed
  • OR xen-doc-html-4.7.6_04-43.39 is installed
  • OR xen-libs-4.7.6_04-43.39 is installed
  • OR xen-libs-32bit-4.7.6_04-43.39 is installed
  • OR xen-tools-4.7.6_04-43.39 is installed
  • OR xen-tools-domU-4.7.6_04-43.39 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_121-92_109-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_29-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • fetchmail-6.3.26-12 is installed
  • OR fetchmailconf-6.3.26-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libecpg6-10.9-1.12 is installed
  • OR libpq5-10.9-1.12 is installed
  • OR libpq5-32bit-10.9-1.12 is installed
  • OR postgresql10-10.9-1.12 is installed
  • OR postgresql10-contrib-10.9-1.12 is installed
  • OR postgresql10-docs-10.9-1.12 is installed
  • OR postgresql10-libs-10.9-1.12 is installed
  • OR postgresql10-plperl-10.9-1.12 is installed
  • OR postgresql10-plpython-10.9-1.12 is installed
  • OR postgresql10-pltcl-10.9-1.12 is installed
  • OR postgresql10-server-10.9-1.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • libssh2-1-1.4.3-20.9 is installed
  • OR libssh2-1-32bit-1.4.3-20.9 is installed
  • OR libssh2_org-1.4.3-20.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • postgresql96-9.6.15-3.29 is installed
  • OR postgresql96-contrib-9.6.15-3.29 is installed
  • OR postgresql96-docs-9.6.15-3.29 is installed
  • OR postgresql96-libs-9.6.15-3.29 is installed
  • OR postgresql96-plperl-9.6.15-3.29 is installed
  • OR postgresql96-plpython-9.6.15-3.29 is installed
  • OR postgresql96-pltcl-9.6.15-3.29 is installed
  • OR postgresql96-server-9.6.15-3.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libblkid1-2.29.2-3.12 is installed
  • OR libblkid1-32bit-2.29.2-3.12 is installed
  • OR libfdisk1-2.29.2-3.12 is installed
  • OR libmount1-2.29.2-3.12 is installed
  • OR libmount1-32bit-2.29.2-3.12 is installed
  • OR libsmartcols1-2.29.2-3.12 is installed
  • OR libuuid1-2.29.2-3.12 is installed
  • OR libuuid1-32bit-2.29.2-3.12 is installed
  • OR python-libmount-2.29.2-3.12 is installed
  • OR util-linux-2.29.2-3.12 is installed
  • OR util-linux-lang-2.29.2-3.12 is installed
  • OR util-linux-systemd-2.29.2-3.12 is installed
  • OR uuidd-2.29.2-3.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • dpdk-17.11.4-3 is installed
  • OR dpdk-kmp-default-17.11.4_k4.12.14_94.41-3 is installed
  • OR dpdk-thunderx-17.11.4-3 is installed
  • OR dpdk-thunderx-kmp-default-17.11.4_k4.12.14_94.41-3 is installed
  • OR dpdk-tools-17.11.4-3 is installed
  • OR libdpdk-17_11-17.11.4-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND Package Information
  • xen-4.10.4_12-3.35 is installed
  • OR xen-devel-4.10.4_12-3.35 is installed
  • OR xen-libs-4.10.4_12-3.35 is installed
  • OR xen-tools-4.10.4_12-3.35 is installed
  • OR xen-tools-domU-4.10.4_12-3.35 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND dnsmasq-utils-2.71-8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • openstack-nova-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-api-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-cells-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-cert-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-compute-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-conductor-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-console-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-consoleauth-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-doc-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-novncproxy-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-placement-api-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-scheduler-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-serialproxy-14.0.11~dev13-4.22 is installed
  • OR openstack-nova-vncproxy-14.0.11~dev13-4.22 is installed
  • OR python-nova-14.0.11~dev13-4.22 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND couchdb-1.7.2-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • ruby2.1-rubygem-haml-4.0.6-3.3 is installed
  • OR rubygem-haml-4.0.6-3.3 is installed
  • BACK