Apache TomCat mod_jk < 1.2.21 Worker Map Remote Overflow
High Nessus Network Monitor Plugin ID 3932
SynopsisThe remote host is vulnerable to a buffer overflow.
DescriptionThe remote host is running the Apache Tomcat web server with mod_jk. mod_jk is reported to be vulnerable to a remote buffer overflow. It is alleged that an attacker sending a URI of greater than 4095 bytes can corrupt the application memory. Successful exploitation would result in the attacker executing arbitrary code on the remote web server.
SolutionUpgrade to version 1.2.21 or higher.