[CLSA-2025:1761576180] Fix CVE(s): CVE-2025-31651
Type:
security
Severity:
Critical
Release date:
2025-10-27 14:43:04 UTC
Description:
* SECURITY UPDATE: Bypassing of some rewrite rules by a specially crafted request - debian/patches/CVE-2025-31651.patch: better handling of URLs - CVE-2025-31651
Updated packages:
  • libtomcat9-embed-java_9.0.31-1~deb10u12+tuxcare.els3_all.deb
    sha:f11444681888fcd100cff2db2f6753a2fa0bc7f5
  • libtomcat9-java_9.0.31-1~deb10u12+tuxcare.els3_all.deb
    sha:2c6bbd92af923c26715fc1b241c63d21e0e8e6ad
  • tomcat9_9.0.31-1~deb10u12+tuxcare.els3_all.deb
    sha:b5e935bd2fcd169c9c1f0e312df4a3e038091709
  • tomcat9-admin_9.0.31-1~deb10u12+tuxcare.els3_all.deb
    sha:4653d95a291c4cce814891605a3488c1ef9eb28a
  • tomcat9-common_9.0.31-1~deb10u12+tuxcare.els3_all.deb
    sha:3dc7a0bbeb37f515ab6ec145447aa8ab3c4edcd3
  • tomcat9-docs_9.0.31-1~deb10u12+tuxcare.els3_all.deb
    sha:8cae880463599441799cf82e173b0d62d95eaa49
  • tomcat9-examples_9.0.31-1~deb10u12+tuxcare.els3_all.deb
    sha:9031c7a0592ba5fa946aba5d8b648353321c49e8
  • tomcat9-user_9.0.31-1~deb10u12+tuxcare.els3_all.deb
    sha:1fdd665af3fdaf54b1f6339a9e05273f8fb30c2c
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.