[CLSA-2023:1689009963] Fix CVE(s): CVE-2022-29885
Type:
security
Severity:
Important
Release date:
2023-07-10 17:26:08 UTC
Description:
* SECURITY UPDATE: EncryptInterceptor only provides partial protection on untrusted network - debian/patches/CVE-2022-29885.patch: Update the documentation to state that the EncryptInterceptor does not provide sufficient protection to run Tomcat clustering over an untrusted network. - CVE-2022-29885
Updated packages:
  • libtomcat8-embed-java_8.5.39-1ubuntu1~18.04.3+tuxcare.els3_all.deb
    sha:f7c4c8624e1af715cc0fb0f46be19ac3bcb5a84f
  • libtomcat8-java_8.5.39-1ubuntu1~18.04.3+tuxcare.els3_all.deb
    sha:061a22bc2cbce06b5224dcaf8d75f06f08b261f3
  • tomcat8_8.5.39-1ubuntu1~18.04.3+tuxcare.els3_all.deb
    sha:95eed1c3f48a8ef87e56c01c696213a8a0cb585e
  • tomcat8-admin_8.5.39-1ubuntu1~18.04.3+tuxcare.els3_all.deb
    sha:231905e89c905a3a46e2a6f909c691a97cc03e68
  • tomcat8-common_8.5.39-1ubuntu1~18.04.3+tuxcare.els3_all.deb
    sha:38bb4e8d4cbf34c0df672f55a4e3118972bc6a88
  • tomcat8-docs_8.5.39-1ubuntu1~18.04.3+tuxcare.els3_all.deb
    sha:5a54d400e92dac8d4320811b427b8ed9c9138341
  • tomcat8-examples_8.5.39-1ubuntu1~18.04.3+tuxcare.els3_all.deb
    sha:0f0f17c1b6fd90535701814c6ba513d394c48a0b
  • tomcat8-user_8.5.39-1ubuntu1~18.04.3+tuxcare.els3_all.deb
    sha:ca96388f108e54df9261ae94c659d7b59054ff38
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.