Details
Apache Tomcat 6.0.0 through 6.0.15 processes parameters in the context of the wrong request when an exception occurs during parameter processing, which might allow remote attackers to obtain sensitive information, as demonstrated by disconnecting during this processing in order to trigger the exception.Novell Bugzilla entry: 360501,427726 SUSE Security Advisories:
- SUSE-SR:2009:004, published Tue, 17 Feb 2009 10:00:00 +0000
- SUSE-SR:2009:004 , published Tue, 17 Feb 2009 10:00:00 +0000
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| SUSE Linux Enterprise Server 10 SP2 for AMD64 and Intel EM64T SUSE Linux Enterprise Server 10 SP2 for IBM POWER SUSE Linux Enterprise Server 10 SP2 for IBM zSeries 64bit SUSE Linux Enterprise Server 10 SP2 for IPF SUSE Linux Enterprise Server 10 SP2 for x86 |
| sles10-sp2. s390x sles10-sp2. x86 sles10-sp2. x86-64 sles10-sp2. ia64 sles10-sp2. ppc ZYPP Patch Nr: 5850 |