Known vulnerabilities in libtomcat7-java (Ubuntu package)
Vendor:
Canonical Ltd.
Software:
libtomcat7-java (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:libtomcat7-java_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
5
Public exploits:
3
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
7.0.53-1
7.0.54-1
7.0.54-2
7.0.55-1ubuntu0.2
7.0.55-1
7.0.56-1
7.0.56-2ubuntu0.1
7.0.56-2
7.0.42-1
7.0.47-1
7.0.50-1
7.0.52-1ubuntu0.1
7.0.52-1ubuntu0.3
7.0.52-1ubuntu0.6
7.0.52-1ubuntu0.7
7.0.52-1ubuntu0.8
7.0.52-1ubuntu0.9
7.0.52-1ubuntu0.10
7.0.52-1ubuntu0.11
7.0.52-1ubuntu0.13
7.0.52-1ubuntu0.14
7.0.52-1ubuntu0.15
Ubuntu Pro
7.0.68-1
7.0.26-1ubuntu1
7.0.26-1ubuntu1.2
7.0.52-1ubuntu0.16
7.0.52-1
7.0.68-1ubuntu0.4
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU51012 - Deserialization of Untrusted Data CVE-2021-25329 |
CWE-502 | Medium | Ubuntu Pro | 01.03.2021 |
SB2021030115 SB2021031620 SB2021040723 and 16 more |
||
| #VU28158 - Deserialization of Untrusted Data CVE-2020-9484 |
CWE-502 | High | Ubuntu Pro | 21.05.2020 |
SB2020052124 SB2020052501 SB2020053102 and 47 more |
||
| #VU18638 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2019-0221 |
CWE-79 | Low | Ubuntu Pro | 30.05.2019 |
SB2019041101 SB2019070106 SB2019072501 and 13 more |
||
| #VU8669 - Improper input validation CVE-2017-12617 |
CWE-20 | High | Ubuntu Pro | 04.10.2017 |
SB2017100401 SB2017102604 SB2017112403 and 20 more |
||
| #VU8543 - Exposure of sensitive information to an unauthorized actor CVE-2017-12616 |
CWE-200 | Low | Ubuntu Pro | 21.09.2017 |
SB2017092101 SB2017092116 SB2017112404 and 2 more |