Security update for tomcat
This update for tomcat fixes the following issues: - CVE-2017-5647 Pipelined requests could lead to information disclosure (bsc#1033448) - CVE-2017-5648 Untrusted application could retain listener leading to information disclosure (bsc#1033447) - CVE-2016-8745 shared Processor on Connector code could lead to information disclosure (bsc#1015119)
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for tomcat fixes the following issues: - CVE-2017-5647 Pipelined requests could lead to information disclosure (bsc#1033448) - CVE-2017-5648 Untrusted application could retain listener leading to information disclosure (bsc#1033447) - CVE-2016-8745 shared Processor on Connector code could lead to information disclosure (bsc#1015119)
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1015119
- https://bugzilla.suse.com/1033447
- https://bugzilla.suse.com/1033448
- https://www.suse.com/security/cve/CVE-2016-8745
- https://www.suse.com/security/cve/CVE-2017-5647
- https://www.suse.com/security/cve/CVE-2017-5648
- https://www.suse.com/support/update/announcement/2017/suse-su-20171382-1/