CVE Vulnerabilities

CVE-2003-0866

Published: Nov 17, 2003 | Modified: Nov 07, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

The Catalina org.apache.catalina.connector.http package in Tomcat 4.0.x up to 4.0.3 allows remote attackers to cause a denial of service via several requests that do not follow the HTTP protocol, which causes Tomcat to reject later requests.

Affected Software

Name Vendor Start Version End Version
Tomcat Apache 4.0.0 (including) 4.0.0 (including)
Tomcat Apache 4.0.1 (including) 4.0.1 (including)
Tomcat Apache 4.0.2 (including) 4.0.2 (including)
Tomcat Apache 4.0.3 (including) 4.0.3 (including)
Tomcat Apache 4.0.4 (including) 4.0.4 (including)
Tomcat Apache 4.0.5 (including) 4.0.5 (including)
Tomcat Apache 4.0.6 (including) 4.0.6 (including)

References