REDHAT-BUG-1376712: High severity Apache Tomcat vulnerability
It was reported that the Tomcat init script performed unsafe file handling, which could result in local privilege escalation.
References:
http://seclists.org/bugtraq/2016/Sep/26
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1376712?
REDHAT-BUG-1376712 is classified as a high severity vulnerability due to its potential to lead to local privilege escalation.
How do I fix REDHAT-BUG-1376712?
To fix REDHAT-BUG-1376712, it is recommended to update the Apache Tomcat software to the latest version that addresses this vulnerability.
What is the main issue identified in REDHAT-BUG-1376712?
The main issue in REDHAT-BUG-1376712 is unsafe file handling in the Tomcat init script that can lead to local privilege escalation.
Who is affected by REDHAT-BUG-1376712?
Users running vulnerable versions of Apache Tomcat are affected by REDHAT-BUG-1376712.
Is there a workaround for REDHAT-BUG-1376712?
While the primary solution for REDHAT-BUG-1376712 is to apply updates, immediate workarounds include restricting access to affected files.