Re: [SECURITY] CVE-2024-38286 Apache Tomcat - Denial of Service

2024-09-27 Thread Rémy Maucherat
On Fri, Sep 27, 2024 at 8:37 PM Amarendra Godbole wrote: > > On Mon, Sep 23, 2024 at 5:54 AM Mark Thomas wrote: > > > > CVE-2024-38286 Apache Tomcat - Denial of Service > > > > Severity: Important > > > > Vendor: The Apache Software Foundation > > > > Versions Affected: > > Apache Tomcat 11.0.0-M

Re: [SECURITY] CVE-2024-38286 Apache Tomcat - Denial of Service

2024-09-27 Thread Amarendra Godbole
On Mon, Sep 23, 2024 at 5:54 AM Mark Thomas wrote: > > CVE-2024-38286 Apache Tomcat - Denial of Service > > Severity: Important > > Vendor: The Apache Software Foundation > > Versions Affected: > Apache Tomcat 11.0.0-M1 to 11.0.0-M20 > Apache Tomcat 10.1.0-M1 to 10.1.24 > Apache Tomcat 9.0.13 to 9

[SECURITY] CVE-2024-38286 Apache Tomcat - Denial of Service

2024-09-23 Thread Mark Thomas
CVE-2024-38286 Apache Tomcat - Denial of Service Severity: Important Vendor: The Apache Software Foundation Versions Affected: Apache Tomcat 11.0.0-M1 to 11.0.0-M20 Apache Tomcat 10.1.0-M1 to 10.1.24 Apache Tomcat 9.0.13 to 9.0.89 Description: Tomcat, under certain configurations on any platfo