[CLSA-2025:1742733084] tomcat: Fix of CVE-2025-24813
Type:
security
Severity:
Critical
Release date:
2025-03-23 13:34:38 UTC
Description:
- CVE-2025-24813: Fix path equivalence vulnerability to prevent remote code execution and information disclosure in Default Servlet
Updated packages:
  • tomcat-9.0.62-11.el9_2.3.tuxcare.els9.noarch.rpm
    sha:6a4435c2797f59da5cc88b2f910372b038c5b5945ea554e2159e6511428134f1
  • tomcat-admin-webapps-9.0.62-11.el9_2.3.tuxcare.els9.noarch.rpm
    sha:3c7de887f303739d5cbd1bca24cf4231cc95a655b2a60046cf54b57e72461e3b
  • tomcat-docs-webapp-9.0.62-11.el9_2.3.tuxcare.els9.noarch.rpm
    sha:aa613fb34aa5c5994eebe0c3c8ab0c734238b293bf2752649629ea782ae9db77
  • tomcat-el-3.0-api-9.0.62-11.el9_2.3.tuxcare.els9.noarch.rpm
    sha:1ca7b094ef3dfe0f607020345c50a62e896184c0e3a6d60fa256992f4a137607
  • tomcat-jsp-2.3-api-9.0.62-11.el9_2.3.tuxcare.els9.noarch.rpm
    sha:60593cbef9a1f228596fe815dc7c01df98d58c6849bcc911efc59b47c8253af5
  • tomcat-lib-9.0.62-11.el9_2.3.tuxcare.els9.noarch.rpm
    sha:529316fe4045d98cb69c85e4c89c3db219fde359d2906cdfe602a7748a10f607
  • tomcat-servlet-4.0-api-9.0.62-11.el9_2.3.tuxcare.els9.noarch.rpm
    sha:91e8484e5109920cf15c52f29a935a6d0563a68a4fdfa09c1f29171bdfe77d77
  • tomcat-webapps-9.0.62-11.el9_2.3.tuxcare.els9.noarch.rpm
    sha:038d20fc56c977cbc748b3b3b5544a835f8755a05190cbab502f636965e3eef2
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.