Information disclosure in Apache Tomcat - CVE-2017-5647

 

Information disclosure in Apache Tomcat - CVE-2017-5647

Published: May 24, 2017 / Updated: July 25, 2018


Vulnerability identifier: #VU6674
CSH Severity: Low
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-5647
CWE-ID: CWE-200
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to obtain potentially sensitive information on the target system.

The weakness exists in the handling of the pipelined requests when send file was used resulted in the pipelined request being lost when send file processing of the previous request completed. A remote attacker can cause responses to appear to be sent for the wrong request.

Affected software

Apache Tomcat
FlashSystem 840 9840-AE1 & 9843-AE1
Storage Copy Data Management
EMC Cloud Tiering Appliance
FlashSystem 900 9840-AE2 and 9843-AE2
Amazon Linux AMI
Fedora
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux EUS Compute Node
SUSE Linux
Opensuse
Dell Secure Connect Gateway
tomcat7 (Debian package)
tomcat8 (Debian package)
tomcat
IBM Storwize V3500
IBM Storwize V5000
IBM Storwize V3700
IBM SAN Volume Controller
IBM Storwize V7000
IBM FlashSystem V9000

How to mitigate CVE-2017-5647

The vulnerability is addressed in the versions 6.0.53, 7.0.77, 9.0.0 M19.

Apache Tomcat - addressed in versions 6.0.53, 7.0.77, 9.0.0-M19
Dell Secure Connect Gateway - update to 5.12.00.10
tomcat7 (Debian package) - update to 7.0.56-3+deb8u10
tomcat8 (Debian package) - update to 8.0.14-1+deb8u9
Storage Copy Data Management - update to 2.2.26.0
tomcat - update to 7.0.77-1.el6
IBM Storwize V3500 - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM Storwize V5000 - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM Storwize V3700 - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM SAN Volume Controller - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM Storwize V7000 - addressed in versions 7.5.0.13, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
IBM FlashSystem V9000 - addressed in versions 7.5.1.6, 7.6.1.8, 7.7.1.8, 7.8.1.4, 8.1.0.2
EMC Cloud Tiering Appliance - addressed in versions 13.0.0.2.29, 13.1.0.2.20

External References

Related Security Bulletins