CVE Vulnerabilities

CVE-2006-7197

Published: Apr 25, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:C/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The AJP connector in Apache Tomcat 5.5.15 uses an incorrect length for chunks, which can cause a buffer over-read in the ajp_process_callback in mod_jk, which allows remote attackers to read portions of sensitive memory.

Affected Software

NameVendorStart VersionEnd Version
TomcatApache5.5.15 (including)5.5.15 (including)
Red Hat Network Satellite Server v 4.2RedHatjabberd-0:2.0s10-3.38.rhn*
Red Hat Network Satellite Server v 4.2RedHatjava-1.4.2-ibm-0:1.4.2.10-1jpp.2.el4*
Red Hat Network Satellite Server v 4.2RedHatjfreechart-0:0.9.20-3.rhn*
Red Hat Network Satellite Server v 4.2RedHatopenmotif21-0:2.1.30-11.RHEL4.6*
Red Hat Network Satellite Server v 4.2RedHatperl-Crypt-CBC-0:2.24-1.el4*
Red Hat Network Satellite Server v 4.2RedHatrhn-apache-0:1.3.27-36.rhn.rhel4*
Red Hat Network Satellite Server v 4.2RedHatrhn-modjk-0:1.2.23-2rhn.rhel4*
Red Hat Network Satellite Server v 4.2RedHatrhn-modperl-0:1.29-16.rhel4*
Red Hat Network Satellite Server v 4.2RedHatrhn-modssl-0:2.8.12-8.rhn.10.rhel4*
Red Hat Network Satellite Server v 4.2RedHattomcat5-0:5.0.30-0jpp_10rh*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatjabberd-0:2.0s10-3.37.rhn*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatjava-1.4.2-ibm-0:1.4.2.10-1jpp.2.el3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatjfreechart-0:0.9.20-3.rhn*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatopenmotif21-0:2.1.30-9.RHEL3.8*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatperl-Crypt-CBC-0:2.24-1.el3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatrhn-apache-0:1.3.27-36.rhn.rhel3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatrhn-modjk-0:1.2.23-2rhn.rhel3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatrhn-modperl-0:1.29-16.rhel3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatrhn-modssl-0:2.8.12-8.rhn.10.rhel3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHattomcat5-0:5.0.30-0jpp_10rh*
Red Hat Network Satellite Server v 5.0RedHatjabberd-0:2.0s10-3.38.rhn*
Red Hat Network Satellite Server v 5.0RedHatjava-1.4.2-ibm-0:1.4.2.10-1jpp.2.el4*
Red Hat Network Satellite Server v 5.0RedHatjfreechart-0:0.9.20-3.rhn*
Red Hat Network Satellite Server v 5.0RedHatopenmotif21-0:2.1.30-11.RHEL4.6*
Red Hat Network Satellite Server v 5.0RedHatperl-Crypt-CBC-0:2.24-1.el4*
Red Hat Network Satellite Server v 5.0RedHatrhn-apache-0:1.3.27-36.rhn.rhel4*
Red Hat Network Satellite Server v 5.0RedHatrhn-modjk-0:1.2.23-2rhn.rhel4*
Red Hat Network Satellite Server v 5.0RedHatrhn-modperl-0:1.29-16.rhel4*
Red Hat Network Satellite Server v 5.0RedHatrhn-modssl-0:2.8.12-8.rhn.10.rhel4*
Red Hat Network Satellite Server v 5.0RedHattomcat5-0:5.0.30-0jpp_10rh*

References