[CLSA-2025:1755272015] tomcat: Fix of CVE-2025-24813
Type:
security
Severity:
Critical
Release date:
2025-08-15 15:33:39 UTC
Description:
- CVE-2025-24813: fix path equivalence vulnerability leading to remote code execution and information disclosure
Updated packages:
  • tomcat-7.0.76-16.el7_9.tuxcare.els3.noarch.rpm
    sha:1fc27d9168491cd27f44dbe5cf83baec47c6b17821a085b141a3441254865775
  • tomcat-admin-webapps-7.0.76-16.el7_9.tuxcare.els3.noarch.rpm
    sha:7fd39db5a13cdd1ccd906dd295a3889d8d705752b1665e0e5ec1d555b7ca24bb
  • tomcat-docs-webapp-7.0.76-16.el7_9.tuxcare.els3.noarch.rpm
    sha:68e9ea9eb17037ac20bd1ff8112b47ae07a2e8c2cea8719306a6224d71ac0daf
  • tomcat-el-2.2-api-7.0.76-16.el7_9.tuxcare.els3.noarch.rpm
    sha:1701ad9685989c545208865f69f5bf6e95031451df599af1a250e10a1572388b
  • tomcat-javadoc-7.0.76-16.el7_9.tuxcare.els3.noarch.rpm
    sha:d7e2afc9a5e1c821069946483ef2abdadc3272bcd78c88de428ed558b5424ae2
  • tomcat-jsp-2.2-api-7.0.76-16.el7_9.tuxcare.els3.noarch.rpm
    sha:be98f82066cf466337c9a9f2a508024c83a438b6aa184932c2e77592c918de5e
  • tomcat-jsvc-7.0.76-16.el7_9.tuxcare.els3.noarch.rpm
    sha:cb99077fd409f94ef7d4f69fb017276c023f902068c5312d22d12c386859a18d
  • tomcat-lib-7.0.76-16.el7_9.tuxcare.els3.noarch.rpm
    sha:14051d39f254920472ce52bce681264863d946064c99522c9ff0b7c529ae0ed3
  • tomcat-servlet-3.0-api-7.0.76-16.el7_9.tuxcare.els3.noarch.rpm
    sha:687a3bf7045d679c9ed6e2a036bbc9f171a06f2ed2a0544beb00ee3f49eebb92
  • tomcat-webapps-7.0.76-16.el7_9.tuxcare.els3.noarch.rpm
    sha:01b0ce076c674a26a37f260f7e33ab710439d40e22078737e88879c2075493d3
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.