CVE Vulnerabilities

CVE-2023-34981

Published: Jun 21, 2023 | Modified: Jul 21, 2023
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A regression in the fix for bug 66512 in Apache Tomcat 11.0.0-M5, 10.1.8, 9.0.74 and 8.5.88 meant that, if a response did not include any HTTP headers no AJP SEND_HEADERS messare woudl be sent for the response which in turn meant that at least one AJP proxy (mod_proxy_ajp) would use the response headers from the previous request leading to an information leak.

Affected Software

Name Vendor Start Version End Version
Tomcat Apache 8.5.88 (including) 8.5.88 (including)
Tomcat Apache 9.0.74 (including) 9.0.74 (including)
Tomcat Apache 10.1.8 (including) 10.1.8 (including)
Tomcat Apache 11.0.0-milestone5 (including) 11.0.0-milestone5 (including)

References