[CLSA-2025:1738695770] tomcat: Fix of CVE-2023-45648
Type:
security
Severity:
Moderate
Release date:
2025-02-04 19:02:56 UTC
Description:
- CVE-2023-45648: fix improper processing of trailer headers which could lead to the possibility of request smuggling when behind a reverse proxy
Updated packages:
  • tomcat-9.0.62-11.el9_2.3.tuxcare.els3.noarch.rpm
    sha:8861e05ca2103c9aceb51b65876854cc3a2054a69b8af11a4a75b4ebdcc75706
  • tomcat-admin-webapps-9.0.62-11.el9_2.3.tuxcare.els3.noarch.rpm
    sha:a0a9832909e32606c9c7e43f9001bb609d5ef886b7929010eaac864bc3a7b2cc
  • tomcat-docs-webapp-9.0.62-11.el9_2.3.tuxcare.els3.noarch.rpm
    sha:5aa33839bcc4ae93d5664f2e823942b3fe8dc9adb8f0089ceb4950ddd9c82a1b
  • tomcat-el-3.0-api-9.0.62-11.el9_2.3.tuxcare.els3.noarch.rpm
    sha:bacd3238bb9ad5f987480c57fb88f534c7903e90fa9fbe3cffe5bccc1971ebc1
  • tomcat-jsp-2.3-api-9.0.62-11.el9_2.3.tuxcare.els3.noarch.rpm
    sha:c96b453929d86516ead8f98214f488d523a7b8882e74b2a41a8320f7499832cb
  • tomcat-lib-9.0.62-11.el9_2.3.tuxcare.els3.noarch.rpm
    sha:1ac1e5e7c6f3fdec69d6039aff224ca5c86730eed8f3786fb62c3fd9a072c433
  • tomcat-servlet-4.0-api-9.0.62-11.el9_2.3.tuxcare.els3.noarch.rpm
    sha:0665fddc4f0c0476d57f28306edf3bbaa0f75f43a7d554fe60bd3177da426830
  • tomcat-webapps-9.0.62-11.el9_2.3.tuxcare.els3.noarch.rpm
    sha:f295a965df1a74cffc05c58d53c33e19ba1dffe9be86b06122987692132f5a6e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.