Vulnerability Bulletins |
DSA-3721 tomcat7 - security update |
|
| Affected software | Debian |
|
Multiple security vulnerabilities have been discovered in the Tomcatservlet and JSP engine, which may result in possible timing attacks todetermine valid user names, bypass of the SecurityManager, disclosure ofsystem properties, unrestricted access to global resources, arbitraryfile overwrites, and potentially escalation of privileges. More info: https://www.debian.org/security/2016/dsa-3721 |
|






