Description:
Directory traversal via rewrite with possible RCE if PUT is enabled.
(CVE-2025-55752)
Console manipulation via escape sequences in log messages.
(CVE-2025-55754)
Delayed cleaning of multi-part upload temporary files may lead to DoS.
(CVE-2025-61795)
- https://bugs.mageia.org/show_bug.cgi?id=34699
- https://www.openwall.com/lists/oss-security/2025/10/27/4
- https://www.openwall.com/lists/oss-security/2025/10/27/5
- https://www.openwall.com/lists/oss-security/2025/10/27/6
- https://www.cve.org/CVERecord?id=CVE-2025-55752
- https://www.cve.org/CVERecord?id=CVE-2025-55754
- https://www.cve.org/CVERecord?id=CVE-2025-61795
- 9/core/tomcat-9.0.111-1.mga9
Get the latest Linux and open source security news straight to your inbox.