CVE-2010-2227
Publication date 13 July 2010
Last updated 24 July 2024
Ubuntu priority
Apache Tomcat 5.5.0 through 5.5.29, 6.0.0 through 6.0.27, and 7.0.0 beta does not properly handle an invalid Transfer-Encoding header, which allows remote attackers to cause a denial of service (application outage) or obtain sensitive information via a crafted header that interferes with "recycling of a buffer."
Status
Package | Ubuntu Release | Status |
---|---|---|
tomcat5 | ||
tomcat5.5 | ||
tomcat6 | ||
Patch details
Package | Patch details |
---|---|
tomcat5 | |
tomcat5.5 | |
tomcat6 |