David Jorm discovered that Tomcat incorrectly handled certain requests submitted using chunked transfer encoding. A remote attacker could use this flaw to cause the Tomcat server to consume resources, resulting in a denial of service. (CVE-2014-0075)
It was discovered that Tomcat did not properly restrict XSLT stylesheets. An attacker could use this issue with a crafted web application to bypass security-manager restrictions and read arbitrary files. (CVE-2014-0096)
It was discovered that Tomcat incorrectly handled certain Content-Length headers. A remote attacker could use this flaw in configurations where Tomcat is behind a reverse proxy to perform HTTP request smuggling attacks. (CVE-2014-0099)
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "7.0.52-1ubuntu0.1",
"binary_name": "libservlet3.0-java"
},
{
"binary_version": "7.0.52-1ubuntu0.1",
"binary_name": "libtomcat7-java"
},
{
"binary_version": "7.0.52-1ubuntu0.1",
"binary_name": "tomcat7"
},
{
"binary_version": "7.0.52-1ubuntu0.1",
"binary_name": "tomcat7-admin"
},
{
"binary_version": "7.0.52-1ubuntu0.1",
"binary_name": "tomcat7-common"
},
{
"binary_version": "7.0.52-1ubuntu0.1",
"binary_name": "tomcat7-docs"
},
{
"binary_version": "7.0.52-1ubuntu0.1",
"binary_name": "tomcat7-examples"
},
{
"binary_version": "7.0.52-1ubuntu0.1",
"binary_name": "tomcat7-user"
}
]
}
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-2302-1.json"
{
"ecosystem": "Ubuntu:14.04:LTS",
"cves": [
{
"id": "CVE-2014-0075",
"severity": [
{
"type": "Ubuntu",
"score": "medium"
}
]
},
{
"id": "CVE-2014-0096",
"severity": [
{
"type": "Ubuntu",
"score": "medium"
}
]
},
{
"id": "CVE-2014-0099",
"severity": [
{
"type": "Ubuntu",
"score": "medium"
}
]
}
]
}