CVE-2011-0534
Publication date 10 February 2011
Last updated 24 July 2024
Ubuntu priority
Description
Apache Tomcat 7.0.0 through 7.0.6 and 6.0.0 through 6.0.30 does not enforce the maxHttpHeaderSize limit for requests involving the NIO HTTP connector, which allows remote attackers to cause a denial of service (OutOfMemoryError) via a crafted request.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| tomcat6 | ||
Patch details
| Package | Patch details |
|---|---|
| tomcat6 |
References
Related Ubuntu Security Notices (USN)
- USN-1097-1
- Tomcat vulnerabilities
- 29 March 2011