CVE-2011-0534
Publication date 10 February 2011
Last updated 24 July 2024
Ubuntu priority
Apache Tomcat 7.0.0 through 7.0.6 and 6.0.0 through 6.0.30 does not enforce the maxHttpHeaderSize limit for requests involving the NIO HTTP connector, which allows remote attackers to cause a denial of service (OutOfMemoryError) via a crafted request.
Status
Package | Ubuntu Release | Status |
---|---|---|
tomcat6 | ||
Patch details
Package | Patch details |
---|---|
tomcat6 |
References
Related Ubuntu Security Notices (USN)
- USN-1097-1
- Tomcat vulnerabilities
- 29 March 2011