Mandriva Linux Security Advisory : tomcat5 (MDVSA-2009:018)
Medium Nessus Plugin ID 36308
SynopsisThe remote Mandriva Linux host is missing one or more security updates.
DescriptionApache Tomcat does not properly handle certain characters in a cookie value, which could possibly lead to the leak of sensitive information such as session IDs (CVE-2007-5333).
The updated packages have been patched to prevent this issue.
SolutionUpdate the affected packages.