Overview
About vulnerability
Generation of Error Message Containing Sensitive Information vulnerability in Apache Tomcat.This issue affects Apache Tomcat: from 8.5.7 through 8.5.63, from 9.0.0-M11 through 9.0.43. Other, EOL versions may also be affected.
Users are recommended to upgrade to version 8.5.64 onwards or 9.0.44 onwards, which contain a fix for the issue.
Details
- Affected product:
- Apache Log4j , Apache Tomcat , Debian 10 ELS , Spring , Ubuntu 18.04 ELS , Ubuntu 20.04 ELS , camel , logging-flume , thrift
- Affected packages:
- Spring Boot @ 1.5.22.RELEASE (+1287 more)