Information disclosure in Apache Tomcat - CVE-2017-5647
Published: May 24, 2017 / Updated: July 25, 2018
Vulnerability identifier: #VU6674
CSH Severity: Low
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-5647
CWE-ID: CWE-200
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to obtain potentially sensitive information on the target system.
The weakness exists in the handling of the pipelined requests when send file was used resulted in the pipelined request being lost when send file processing of the previous request completed. A remote attacker can cause responses to appear to be sent for the wrong request.
The weakness exists in the handling of the pipelined requests when send file was used resulted in the pipelined request being lost when send file processing of the previous request completed. A remote attacker can cause responses to appear to be sent for the wrong request.
Affected software
Apache Tomcat
FlashSystem 840 9840-AE1 & 9843-AE1
Storage Copy Data Management
EMC Cloud Tiering Appliance
FlashSystem 900 9840-AE2 and 9843-AE2
Amazon Linux AMI
Fedora
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux EUS Compute Node
SUSE Linux
Opensuse
Dell Secure Connect Gateway
tomcat7 (Debian package)
tomcat8 (Debian package)
tomcat
IBM Storwize V3500
IBM Storwize V5000
IBM Storwize V3700
IBM SAN Volume Controller
IBM Storwize V7000
IBM FlashSystem V9000
FlashSystem 840 9840-AE1 & 9843-AE1
Storage Copy Data Management
EMC Cloud Tiering Appliance
FlashSystem 900 9840-AE2 and 9843-AE2
Amazon Linux AMI
Fedora
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux EUS Compute Node
SUSE Linux
Opensuse
Dell Secure Connect Gateway
tomcat7 (Debian package)
tomcat8 (Debian package)
tomcat
IBM Storwize V3500
IBM Storwize V5000
IBM Storwize V3700
IBM SAN Volume Controller
IBM Storwize V7000
IBM FlashSystem V9000
How to mitigate CVE-2017-5647
The vulnerability is addressed in the versions 6.0.53, 7.0.77, 9.0.0 M19.
Apache Tomcat - addressed in versions 6.0.53, 7.0.77, 9.0.0-M19
Dell Secure Connect Gateway - update to 5.12.00.10
tomcat7 (Debian package) - update to 7.0.56-3+deb8u10
tomcat8 (Debian package) - update to 8.0.14-1+deb8u9
Storage Copy Data Management - update to 2.2.26.0
tomcat - update to 7.0.77-1.el6
IBM Storwize V3500 - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM Storwize V5000 - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM Storwize V3700 - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM SAN Volume Controller - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM Storwize V7000 - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM FlashSystem V9000 - addressed in versions 7.5.1.6, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
EMC Cloud Tiering Appliance - addressed in versions 13.0.0.2.29, 13.1.0.2.20
Dell Secure Connect Gateway - update to 5.12.00.10
tomcat7 (Debian package) - update to 7.0.56-3+deb8u10
tomcat8 (Debian package) - update to 8.0.14-1+deb8u9
Storage Copy Data Management - update to 2.2.26.0
tomcat - update to 7.0.77-1.el6
IBM Storwize V3500 - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM Storwize V5000 - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM Storwize V3700 - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM SAN Volume Controller - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM Storwize V7000 - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM FlashSystem V9000 - addressed in versions 7.5.1.6, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
EMC Cloud Tiering Appliance - addressed in versions 13.0.0.2.29, 13.1.0.2.20
External References
Related Security Bulletins
- SUSE Linux update for tomcat
- OpenSUSE Linux update for tomcat
- SUSE Linux update for tomcat
- Amazon Linux AMI update for tomcat7, tomcat8
- Amazon Linux AMI update for tomcat6
- Debian update for tomcat8
- Debian update for tomcat7
- Red Hat update for tomcat
- Red Hat update for tomcat6
- Multiple vulnerabilities in DELL Secure Connect Gateway Security
- Multiple vulnerabilities in Dell EMC Cloud Tiering Appliance
- Information disclosure in IBM FlashSystem models 840 and 900
- Information disclosure in SAN Volume Controller, Storwize family and FlashSystem V9000 products
- Fedora EPEL 6 update for tomcat
- Multiple vulnerabilities in IBM Storage Copy Data Management