CVE-2016-6797

Source
https://cve.org/CVERecord?id=CVE-2016-6797
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-6797.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2016-6797
Aliases
Downstream
Related
Published
2017-08-10T22:29:00.203Z
Modified
2026-02-11T00:31:30.596466Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
[none]
Details

The ResourceLinkFactory implementation in Apache Tomcat 9.0.0.M1 to 9.0.0.M9, 8.5.0 to 8.5.4, 8.0.0.RC1 to 8.0.36, 7.0.0 to 7.0.70 and 6.0.0 to 6.0.45 did not limit web application access to global JNDI resources to those resources explicitly linked to the web application. Therefore, it was possible for a web application to access any global JNDI resource whether an explicit ResourceLink had been configured or not.

References

Affected packages

Git
github.com/apache/tomcat

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-6797.json"
github.com/kamailio/kamailio

Affected ranges

Type
GIT
Repo
https://github.com/kamailio/kamailio
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

3.*
3.0_pre1
Other
after_0_9_4_pkg_merge
after_makefile_merges
after_testing_0_8_12_r0_merge
after_testing_0_8_12_r1_merge
after_xl
before_db_api_changes
before_dest_info_changes_2
before_kill_repl_add_rm
before_lumps_split
before_malloc_changes
before_new_timers
before_pa
before_replication_patch
before_socket_info_lists
before_str2ip_changes
before_tcp_port_aliases
before_testing_0_8_12_r0_merge
before_testing_0_8_12_r1_merge
before_tm_timers
before_xl
bflmpsvz
bigbang
bogdan_final_version
budvar
fixstats
gpled
ipv4_working
ipv6
last_merge_to_janakj
listen_ifs
mem-fixes
myself_port_lo
new_cfg_compiles
new_hash
new_timers
old_mod_iface
orig
ported_ser_cvs_modules
post-zt
pre-bigbang
pre-zt
pre22
pre6-tcp4
pre6-tcp5-tm
pre_fixstats
pregpl
pure_ser_cvs_modules
rel_0_8_11_root
rel_0_9_0_root
ser_0-8-6-4
ser_081-plugins
ser_082
ser_0839_errors
ser_0_7
ser_0_8_10
ser_0_8_10_pre2
ser_0_8_10_pre3
ser_0_8_10_pre4
ser_0_8_10_pre5
ser_0_8_3_1
ser_0_8_3_2
ser_0_8_6-5-stable
ser_0_8_6-6-beer-release
ser_0_8_7-0-unstable
ser_0_8_8-final-cd-release
ser_0_8_9
ser_0_8_9-release
sip_083
sip_pre-plugin
sr_before_modules_merge
sr_simpleconfig
srv
tcp2
testing_0_8_12_root
tmp_pcl_tag_17368Js8
v03
v0_2
v0_8_11_pre9
v0_8_11dev34
v0_8_11pre29
v0_8_11pre29-prerelease
v0_8_11pre29-prerelease-cd
v0_8_11pre8
v0_8_12_t02_merged_w_v0_8_11pre35
v0_8_12dev-t03
v0_8_12dev_t05
v0_8_12dev_t13
v0_8_13dev-t16
v0_8_8
voicemail_0_1_0
wo_sp
kamailio-tag-3.*
kamailio-tag-3.0.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-6797.json"
github.com/mysql/mysql-server

Affected ranges

Type
GIT
Repo
https://github.com/mysql/mysql-server
Events

Affected versions

mysql-5.*
mysql-5.5.52
mysql-5.5.53
mysql-5.5.54
mysql-5.5.55
mysql-5.5.56
mysql-5.5.57
mysql-5.5.58
mysql-5.5.59
mysql-5.5.60
mysql-5.5.61
mysql-5.5.62
mysql-5.5.63
mysql-5.6.33
mysql-5.6.34
mysql-5.6.35
mysql-5.6.36
mysql-5.6.37
mysql-5.6.38
mysql-5.6.39
mysql-5.6.40
mysql-5.6.41
mysql-5.6.42
mysql-5.6.43
mysql-5.6.45
mysql-5.6.46
mysql-5.6.47
mysql-5.6.48
mysql-5.6.49
mysql-5.6.50
mysql-5.6.51
mysql-5.7-22-ndb-7.6.6
mysql-5.7.15
mysql-5.7.16
mysql-5.7.17
mysql-5.7.18
mysql-5.7.19
mysql-5.7.20
mysql-5.7.21
mysql-5.7.22
mysql-5.7.24
mysql-5.7.25
mysql-5.7.26
mysql-5.7.27
mysql-5.7.28
mysql-5.7.29
mysql-5.7.30
mysql-5.7.31
mysql-5.7.32
mysql-5.7.33
mysql-5.7.34
mysql-5.7.35
mysql-5.7.36
mysql-5.7.37
mysql-5.7.38
mysql-5.7.39
mysql-5.7.40
mysql-5.7.40-testing
mysql-5.7.41
mysql-5.7.42
mysql-5.7.43
mysql-5.7.44
mysql-8.*
mysql-8.0.0
mysql-8.0.1
mysql-8.0.11
mysql-8.0.12
mysql-8.0.13
mysql-8.0.14
mysql-8.0.15
mysql-8.0.16
mysql-8.0.17
mysql-8.0.18
mysql-8.0.19
mysql-8.0.2
mysql-8.0.20
mysql-8.0.21
mysql-8.0.22
mysql-8.0.23
mysql-8.0.24
mysql-8.0.25
mysql-8.0.26
mysql-8.0.27
mysql-8.0.28
mysql-8.0.29
mysql-8.0.3
mysql-8.0.30
mysql-8.0.31
mysql-8.0.32
mysql-8.0.33
mysql-8.0.34
mysql-8.0.35
mysql-8.0.36
mysql-8.0.4
mysql-cluster-7.*
mysql-cluster-7.2.24
mysql-cluster-7.2.25
mysql-cluster-7.2.26
mysql-cluster-7.2.27
mysql-cluster-7.2.28
mysql-cluster-7.2.29
mysql-cluster-7.2.30
mysql-cluster-7.2.31
mysql-cluster-7.2.32
mysql-cluster-7.2.33
mysql-cluster-7.2.34
mysql-cluster-7.2.35
mysql-cluster-7.2.37
mysql-cluster-7.2.38
mysql-cluster-7.2.39
mysql-cluster-7.2.40
mysql-cluster-7.3.13
mysql-cluster-7.3.14
mysql-cluster-7.3.15
mysql-cluster-7.3.16
mysql-cluster-7.3.17
mysql-cluster-7.3.18
mysql-cluster-7.3.19
mysql-cluster-7.3.20
mysql-cluster-7.3.21
mysql-cluster-7.3.22
mysql-cluster-7.3.23
mysql-cluster-7.3.24
mysql-cluster-7.3.25
mysql-cluster-7.3.26
mysql-cluster-7.3.27
mysql-cluster-7.3.28
mysql-cluster-7.3.29
mysql-cluster-7.3.30
mysql-cluster-7.3.31
mysql-cluster-7.3.33
mysql-cluster-7.4.11
mysql-cluster-7.4.12
mysql-cluster-7.4.13
mysql-cluster-7.4.14
mysql-cluster-7.4.15
mysql-cluster-7.4.16
mysql-cluster-7.4.17
mysql-cluster-7.4.18
mysql-cluster-7.4.19
mysql-cluster-7.4.20
mysql-cluster-7.4.21
mysql-cluster-7.4.23
mysql-cluster-7.4.24
mysql-cluster-7.4.25
mysql-cluster-7.4.26
mysql-cluster-7.4.27
mysql-cluster-7.4.28
mysql-cluster-7.4.29
mysql-cluster-7.4.30
mysql-cluster-7.4.32
mysql-cluster-7.4.33
mysql-cluster-7.4.34
mysql-cluster-7.4.35
mysql-cluster-7.4.36
mysql-cluster-7.4.37
mysql-cluster-7.4.38
mysql-cluster-7.4.39
mysql-cluster-7.5.1
mysql-cluster-7.5.10
mysql-cluster-7.5.11
mysql-cluster-7.5.12
mysql-cluster-7.5.13
mysql-cluster-7.5.14
mysql-cluster-7.5.15
mysql-cluster-7.5.16
mysql-cluster-7.5.17
mysql-cluster-7.5.18
mysql-cluster-7.5.19
mysql-cluster-7.5.2
mysql-cluster-7.5.20
mysql-cluster-7.5.21
mysql-cluster-7.5.23
mysql-cluster-7.5.24
mysql-cluster-7.5.25
mysql-cluster-7.5.26
mysql-cluster-7.5.27
mysql-cluster-7.5.28
mysql-cluster-7.5.29
mysql-cluster-7.5.3
mysql-cluster-7.5.30
mysql-cluster-7.5.31
mysql-cluster-7.5.32
mysql-cluster-7.5.4
mysql-cluster-7.5.5
mysql-cluster-7.5.6
mysql-cluster-7.5.7
mysql-cluster-7.5.8
mysql-cluster-7.5.9
mysql-cluster-7.6.10
mysql-cluster-7.6.11
mysql-cluster-7.6.12
mysql-cluster-7.6.13
mysql-cluster-7.6.14
mysql-cluster-7.6.15
mysql-cluster-7.6.16
mysql-cluster-7.6.17
mysql-cluster-7.6.19
mysql-cluster-7.6.2
mysql-cluster-7.6.20
mysql-cluster-7.6.22
mysql-cluster-7.6.23
mysql-cluster-7.6.24
mysql-cluster-7.6.25
mysql-cluster-7.6.26
mysql-cluster-7.6.27
mysql-cluster-7.6.28
mysql-cluster-7.6.3
mysql-cluster-7.6.4
mysql-cluster-7.6.5
mysql-cluster-7.6.6
mysql-cluster-7.6.7
mysql-cluster-7.6.8
mysql-cluster-7.6.9
mysql-cluster-8.*
mysql-cluster-8.0.16
mysql-cluster-8.0.18
mysql-cluster-8.0.19
mysql-cluster-8.0.20
mysql-cluster-8.0.21
mysql-cluster-8.0.22
mysql-cluster-8.0.23
mysql-cluster-8.0.24
mysql-cluster-8.0.25
mysql-cluster-8.0.26
mysql-cluster-8.0.27
mysql-cluster-8.0.28
mysql-cluster-8.0.29
mysql-cluster-8.0.30
mysql-cluster-8.0.31
mysql-cluster-8.0.32
mysql-cluster-8.0.33
mysql-cluster-8.0.34
mysql-cluster-8.0.35
mysql-cluster-8.0.36

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-6797.json"