Apache Tomcat 5.5.x before 5.5.35, 6.x before 6.0.34, and 7.x before 7.0.23 uses an inefficient approach for handling parameters, which allows remote attackers to cause a denial of service (CPU consumption) via a request that contains many parameters and parameter values, a different vulnerability than CVE-2011-4858.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Tomcat | Apache | 5.5.0 (including) | 5.5.0 (including) |
Tomcat | Apache | 5.5.1 (including) | 5.5.1 (including) |
Tomcat | Apache | 5.5.2 (including) | 5.5.2 (including) |
Tomcat | Apache | 5.5.3 (including) | 5.5.3 (including) |
Tomcat | Apache | 5.5.4 (including) | 5.5.4 (including) |
Tomcat | Apache | 5.5.5 (including) | 5.5.5 (including) |
Tomcat | Apache | 5.5.6 (including) | 5.5.6 (including) |
Tomcat | Apache | 5.5.7 (including) | 5.5.7 (including) |
Tomcat | Apache | 5.5.8 (including) | 5.5.8 (including) |
Tomcat | Apache | 5.5.9 (including) | 5.5.9 (including) |
Tomcat | Apache | 5.5.10 (including) | 5.5.10 (including) |
Tomcat | Apache | 5.5.11 (including) | 5.5.11 (including) |
Tomcat | Apache | 5.5.12 (including) | 5.5.12 (including) |
Tomcat | Apache | 5.5.13 (including) | 5.5.13 (including) |
Tomcat | Apache | 5.5.14 (including) | 5.5.14 (including) |
Tomcat | Apache | 5.5.15 (including) | 5.5.15 (including) |
Tomcat | Apache | 5.5.16 (including) | 5.5.16 (including) |
Tomcat | Apache | 5.5.17 (including) | 5.5.17 (including) |
Tomcat | Apache | 5.5.18 (including) | 5.5.18 (including) |
Tomcat | Apache | 5.5.19 (including) | 5.5.19 (including) |
Tomcat | Apache | 5.5.20 (including) | 5.5.20 (including) |
Tomcat | Apache | 5.5.21 (including) | 5.5.21 (including) |
Tomcat | Apache | 5.5.22 (including) | 5.5.22 (including) |
Tomcat | Apache | 5.5.23 (including) | 5.5.23 (including) |
Tomcat | Apache | 5.5.24 (including) | 5.5.24 (including) |
Tomcat | Apache | 5.5.25 (including) | 5.5.25 (including) |
Tomcat | Apache | 5.5.26 (including) | 5.5.26 (including) |
Tomcat | Apache | 5.5.27 (including) | 5.5.27 (including) |
Tomcat | Apache | 5.5.28 (including) | 5.5.28 (including) |
Tomcat | Apache | 5.5.29 (including) | 5.5.29 (including) |
Tomcat | Apache | 5.5.30 (including) | 5.5.30 (including) |
Tomcat | Apache | 5.5.31 (including) | 5.5.31 (including) |
Tomcat | Apache | 5.5.32 (including) | 5.5.32 (including) |
Tomcat | Apache | 5.5.33 (including) | 5.5.33 (including) |
Tomcat | Apache | 5.5.34 (including) | 5.5.34 (including) |