Ubuntu 10.04 LTS / 12.04 LTS / 14.04 LTS : tomcat6, tomcat7 vulnerabilities (USN-2302-1)

Ubuntu Security Notice (C) 2014-2016 Canonical, Inc. / NASL script (C) 2014-2016 Tenable Network Security, Inc.


Synopsis :

The remote Ubuntu host is missing one or more security-related
patches.

Description :

David Jorm discovered that Tomcat incorrectly handled certain requests
submitted using chunked transfer encoding. A remote attacker could use
this flaw to cause the Tomcat server to consume resources, resulting
in a denial of service. (CVE-2014-0075)

It was discovered that Tomcat did not properly restrict XSLT
stylesheets. An attacker could use this issue with a crafted web
application to bypass security-manager restrictions and read arbitrary
files. (CVE-2014-0096)

It was discovered that Tomcat incorrectly handled certain
Content-Length headers. A remote attacker could use this flaw in
configurations where Tomcat is behind a reverse proxy to perform HTTP
request smuggling attacks. (CVE-2014-0099).

Note that Tenable Network Security has extracted the preceding
description block directly from the Ubuntu security advisory. Tenable
has attempted to automatically clean and format it as much as possible
without introducing additional issues.

Solution :

Update the affected libtomcat6-java and / or libtomcat7-java packages.

Risk factor :

Medium / CVSS Base Score : 5.0
(CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P)
CVSS Temporal Score : 4.3
(CVSS2#E:ND/RL:OF/RC:C)
Public Exploit Available : false

Family: Ubuntu Local Security Checks

Nessus Plugin ID: 76935 ()

Bugtraq ID: 67667
67668
67671

CVE ID: CVE-2014-0075
CVE-2014-0096
CVE-2014-0099

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now