Alerts This Week
Warning Icon 1 409
Alerts This Week
Warning Icon 1 409

SUSE: 2020:14375-1 Important: Tomcat6 Remote Code Execution Threat

suse
Calendar Grey May 22, 2020
Dist Suse Esm H88
SUSE has issued a security patch for tomcat6 addressing critical weaknesses, thereby improving system safety.
An update that fixes three vulnerabilities is now available

Summary

This update for tomcat6 fixes the following issues: CVE-2020-9484 (bsc#1171928) Apache Tomcat Remote Code Execution via session persistence If an attacker was able to control the contents and name of a file on a server configured to use the PersistenceManager, then the attacker could have triggered a remote code execution via deserialization of the file under their control. CVE-2019-12418 (bsc#1159723) Local privilege escalation by manipulating the RMI registry and performing a man-in-the-middle attack When Tomcat is configured with the JMX Remote Lifecycle Listener, a local attacker without access to the Tomcat process or configuration files was able to manipulate the RMI registry to perform a man-in-the-middle attack to capture user names and passwords used to access the JMX interface. The

References

#1136085 #1159723 #1171928

Cross- CVE-2019-0221 CVE-2019-12418 CVE-2020-9484

Affected Products:

SUSE Linux Enterprise Server 11-SP4-LTSS

SUSE Linux Enterprise Point of Sale 11-SP3

https://www.suse.com/security/cve/CVE-2019-0221.html

https://www.suse.com/security/cve/CVE-2019-12418.html

https://www.suse.com/security/cve/CVE-2020-9484.html

https://bugzilla.suse.com/1136085

https://bugzilla.suse.com/1159723

https://bugzilla.suse.com/1171928

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2020:14375-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here