GHSA-w97x-xfxf-f9xj

Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/04/GHSA-w97x-xfxf-f9xj/GHSA-w97x-xfxf-f9xj.json
Aliases
  • CVE-2003-0045
Published
2022-04-29T01:25:43Z
Modified
2023-09-18T22:43:28Z
Details

Jakarta Tomcat before 3.3.1a on certain Windows systems may allow remote attackers to cause a denial of service (thread hang and resource consumption) via a request for a JSP page containing an MS-DOS device name, such as aux.jsp.

References

Affected packages

Maven / org.apache.tomcat:tomcat

Source Details

Package Name
org.apache.tomcat:tomcat

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0The exact introduced commit is unknown
Fixed
3.3.1a

Ecosystem specific

{
    "affected_functions": [
        ""
    ]
}