[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256488

 
 

909

 
 

199193

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2022:0784-1 -- SLES tomcat, javapackages-filesystem

ID: oval:org.secpod.oval:def:89046099Date: (C)2022-03-11   (M)2023-10-26
Class: PATCHFamily: unix




This update for tomcat fixes the following issues: Security issues fixed: - CVE-2022-23181: Fixed time of check, time of use vulnerability that allowed local privilege escalation. - Remove log4j dependency, which is currently directly in use - Make the package RPM conflict even more specific to conflict with java-openjdk-headless = 9

Platform:
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server 12 SP4
Product:
tomcat
javapackages-filesystem
Reference:
SUSE-SU-2022:0784-1
CVE-2022-23181
CVE    1
CVE-2022-23181
CPE    8
cpe:/a:apache:tomcat:10.0.0:milestone9
cpe:/o:suse:suse_linux_enterprise_server:12:sp5
cpe:/o:suse:suse_linux_enterprise_server:12:sp4
cpe:/a:apache:tomcat
...

© SecPod Technologies