VDB
BDU%3A2021-00783
BDU%3A2021-00783
PUBLISHED
CVSS 7.800000190734863 HIGH
Уязвимость сервера приложений Apache Tomcat, связанная с выходом операции за границы буфера, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
7.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Сообщество свободного программного обеспечения, Oracle Corp., Red Hat Inc., Novell Inc., Canonical Ltd., Cisco Systems Inc., Apache Software Foundation, АО «Концерн ВНИИНС» | Debian GNU/Linux, Managed File Transfer, Oracle Retail Order Broker, Instantis EnterpriseTrack, Agile Engineering Data Management, Red Hat Enterprise Linux, OpenSUSE Leap, Database Server, Jboss Fuse, OpenShift Application Runtimes, Jboss Web Server, Ubuntu, Oracle Agile PLM, Hyperion Infrastructure Technology, Siebel UI Framework, MySQL Enterprise Monitor, Tomcat, ОС ОН «Стрелец» (запись в едином реестре российских программ №6177) |
Timeline
- Feb 16, 2021 CVE Published
- Nov 21, 2023 CVE Updated
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Security Advisory
References
- https://lists.apache.org/thread.html/r61f411cf82488d6ec213063fc15feeeb88e31b0ca9c29652ee4f962e%40%3Cannounce.tomcat.apache.org%3E url
- http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00084.html url
- http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00088.html url
- https://usn.ubuntu.com/4596-1/ url
- https://strelets.net/patchi-i-obnovleniya-bezopasnosti#16012023 url
- https://www.oracle.com/security-alerts/cpujan2021.html advisory
- https://www.oracle.com/security-alerts/cpuoct2020.html advisory
- https://access.redhat.com/security/cve/cve-2020-13934 advisory
- https://lists.debian.org/debian-lts-announce/2020/07/msg00017.html advisory
- https://www.debian.org/security/2020/dsa-4727 advisory