TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2012-0022

N/A

Beschreibung

Apache Tomcat 5.5.x before 5.5.35, 6.x before 6.0.34, and 7.x before 7.0.23 uses an inefficient approach for handling parameters, which allows remote attackers to cause a denial of service (CPU consumption) via a request that contains many parameters and parameter values, a different vulnerability than CVE-2011-4858.

CVE Details

CVSS v3.1 BewertungN/A
Veroffentlicht1/19/2012
Zuletzt geandert4/11/2025
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

apache:tomcat

Schwachen (CWE)

CWE-189

Referenzen

http://marc.info/?l=bugtraq&m=132871655717248&w=2(af854a3a-2127-422b-91ae-364da2661108)
http://marc.info/?l=bugtraq&m=133294394108746&w=2(af854a3a-2127-422b-91ae-364da2661108)
http://marc.info/?l=bugtraq&m=136485229118404&w=2(af854a3a-2127-422b-91ae-364da2661108)
http://rhn.redhat.com/errata/RHSA-2012-0074.html(af854a3a-2127-422b-91ae-364da2661108)
http://rhn.redhat.com/errata/RHSA-2012-0075.html(af854a3a-2127-422b-91ae-364da2661108)
http://rhn.redhat.com/errata/RHSA-2012-0076.html(af854a3a-2127-422b-91ae-364da2661108)
http://rhn.redhat.com/errata/RHSA-2012-0077.html(af854a3a-2127-422b-91ae-364da2661108)
http://rhn.redhat.com/errata/RHSA-2012-0078.html(af854a3a-2127-422b-91ae-364da2661108)
http://rhn.redhat.com/errata/RHSA-2012-0325.html(af854a3a-2127-422b-91ae-364da2661108)
http://rhn.redhat.com/errata/RHSA-2012-0345.html(af854a3a-2127-422b-91ae-364da2661108)
http://rhn.redhat.com/errata/RHSA-2012-1331.html(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/48213(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/48549(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/48790(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/48791(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/50863(af854a3a-2127-422b-91ae-364da2661108)
http://tomcat.apache.org/security-5.html(af854a3a-2127-422b-91ae-364da2661108)
http://tomcat.apache.org/security-6.html(af854a3a-2127-422b-91ae-364da2661108)
http://tomcat.apache.org/security-7.html(af854a3a-2127-422b-91ae-364da2661108)
http://www.debian.org/security/2012/dsa-2401(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/51447(af854a3a-2127-422b-91ae-364da2661108)

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.