[CLSA-2025:1752087582] Fix CVE(s): CVE-2025-31651
Type:
security
Severity:
Critical
Release date:
2025-07-09 18:59:47 UTC
Description:
* SECURITY UPDATE: Improper Neutralization of Escape, Meta, or Control Sequences vulnerability - debian/patches/CVE-2025-31651.patch: Enforces rewrite rules to preventing bypass of security constraints in specific configurations - CVE-2025-31651
Updated packages:
  • libtomcat9-embed-java_9.0.31-1ubuntu0.9+tuxcare.els1_all.deb
    sha:79556a79f830222fbca3753c830209dd0cf4effa
  • libtomcat9-java_9.0.31-1ubuntu0.9+tuxcare.els1_all.deb
    sha:f2b1455a083b8ae1b834814475a0a94a3157bb7f
  • tomcat9_9.0.31-1ubuntu0.9+tuxcare.els1_all.deb
    sha:1fdfdda4e3bda4b84119c2f723cbf7893238de23
  • tomcat9-admin_9.0.31-1ubuntu0.9+tuxcare.els1_all.deb
    sha:f0d6b9b15c1a71a365ef3f200661984bc001a30f
  • tomcat9-common_9.0.31-1ubuntu0.9+tuxcare.els1_all.deb
    sha:6d2616a5bec2efdd125e485a87850052d95baa04
  • tomcat9-docs_9.0.31-1ubuntu0.9+tuxcare.els1_all.deb
    sha:8f67b6dcf507b8eed7a7aece3a7fe1fe0a9bf51e
  • tomcat9-examples_9.0.31-1ubuntu0.9+tuxcare.els1_all.deb
    sha:b1ff54f0451ab785eac866e7441b98dbc04e0fb2
  • tomcat9-user_9.0.31-1ubuntu0.9+tuxcare.els1_all.deb
    sha:b1cc6f7f784e30530519ef6fe956e2b22040694c
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.