An update is available for tomcat. This update affects Rocky Linux 9. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
tomcat-1:9.0.87-2.el9_5.1.noarch.rpm
tomcat-1:9.0.87-2.el9_5.1.src.rpm
tomcat-admin-webapps-1:9.0.87-2.el9_5.1.noarch.rpm
tomcat-docs-webapp-1:9.0.87-2.el9_5.1.noarch.rpm
tomcat-el-3.0-api-1:9.0.87-2.el9_5.1.noarch.rpm
tomcat-jsp-2.3-api-1:9.0.87-2.el9_5.1.noarch.rpm
tomcat-lib-1:9.0.87-2.el9_5.1.noarch.rpm
tomcat-servlet-4.0-api-1:9.0.87-2.el9_5.1.noarch.rpm
tomcat-webapps-1:9.0.87-2.el9_5.1.noarch.rpm
No references
https://www.cve.org/CVERecord?id=CVE-2024-50379
https://www.cve.org/CVERecord?id=CVE-2025-24813
https://bugzilla.redhat.com/show_bug.cgi?id=2332817
https://bugzilla.redhat.com/show_bug.cgi?id=2351129
Get the latest Linux and open source security news straight to your inbox.