CVE-2011-3376
Publication date 11 November 2011
Last updated 24 July 2024
Ubuntu priority
org/apache/catalina/core/DefaultInstanceManager.java in Apache Tomcat 7.x before 7.0.22 does not properly restrict ContainerServlets in the Manager application, which allows local users to gain privileges by using an untrusted web application to access the Manager application's functionality.
Status
Package | Ubuntu Release | Status |
---|---|---|
tomcat7 | ||
Patch details
Package | Patch details |
---|---|
tomcat7 |