Vulnerability Bulletins |
DSA-3720 tomcat8 - security update |
|
| Affected software | Debian |
|
Multiple security vulnerabilities have been discovered in the Tomcatservlet and JSP engine, which may result in possible timing attacks todetermine valid user names, bypass of the SecurityManager, disclosure ofsystem properties, unrestricted access to global resources, arbitraryfile overwrites, and potentially escalation of privileges. More info: https://www.debian.org/security/2016/dsa-3720 |
|






