REDHAT-BUG-2332815: Low severity Apache Tomcat vulnerability
Uncontrolled Resource Consumption vulnerability in the examples web application provided with Apache Tomcat leads to denial of service.
This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.9.97.
Users are recommended to upgrade to version 11.0.2, 10.1.34 or 9.0.98, which fixes the issue.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Apache Tomcatto a version that resolves this vulnerability.Fixed in 11.0.2 - Upgrade
Upgrade
Apache Tomcatto a version that resolves this vulnerability.Fixed in 10.1.34 - Upgrade
Upgrade
Apache Tomcatto a version that resolves this vulnerability.Fixed in 9.0.98
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2332815?
REDHAT-BUG-2332815 has been identified as a denial of service vulnerability.
How do I fix REDHAT-BUG-2332815?
To resolve REDHAT-BUG-2332815, users should upgrade to the latest version of Apache Tomcat.
Which versions of Apache Tomcat are affected by REDHAT-BUG-2332815?
Apache Tomcat versions 11.0.0-M1 through 11.0.1, 10.1.0-M1 through 10.1.33, and 9.0.0.M1 through 9.9.97 are affected.
What type of vulnerability is REDHAT-BUG-2332815?
REDHAT-BUG-2332815 is classified as an uncontrolled resource consumption vulnerability.
What can happen if REDHAT-BUG-2332815 is exploited?
Exploitation of REDHAT-BUG-2332815 can lead to denial of service, impacting the availability of the web application.