[CLSA-2025:1742577759] Fix CVE(s): CVE-2025-24813
Type:
security
Severity:
Critical
Release date:
2025-03-21 17:22:45 UTC
Description:
* SECURITY UPDATE: path Equivalence leading to Remote Code Execution and/or Information disclosure in Apache Tomcat - debian/patches/CVE-2025-24813.patch: Enhance lifecycle of temporary files used by partial PUT - CVE-2025-24813
Updated packages:
  • libtomcat9-embed-java_9.0.16-3ubuntu0.18.04.2+tuxcare.els12_all.deb
    sha:9d79f550469c8aad8fda2a103d65d35a25c62713
  • libtomcat9-java_9.0.16-3ubuntu0.18.04.2+tuxcare.els12_all.deb
    sha:65ef05de842707095f94b18420a4fcc333b5c454
  • tomcat9_9.0.16-3ubuntu0.18.04.2+tuxcare.els12_all.deb
    sha:54598b8c2a95294ab51d89a4e7807737a727613a
  • tomcat9-admin_9.0.16-3ubuntu0.18.04.2+tuxcare.els12_all.deb
    sha:d3274b636c522bb98c2b2c63eb823728353bb568
  • tomcat9-common_9.0.16-3ubuntu0.18.04.2+tuxcare.els12_all.deb
    sha:9e040c03e4151b4e458cae65c82f2381fd8985fd
  • tomcat9-docs_9.0.16-3ubuntu0.18.04.2+tuxcare.els12_all.deb
    sha:19918cc282b6b68bfc5574bafdb5ac83631fa1db
  • tomcat9-examples_9.0.16-3ubuntu0.18.04.2+tuxcare.els12_all.deb
    sha:51817bf0191e5447f7e3974cde628263493fd683
  • tomcat9-user_9.0.16-3ubuntu0.18.04.2+tuxcare.els12_all.deb
    sha:fcf68d6a7a3c3947b58126afc3a80ee1d9e439f6
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.