Index: security/vuxml/vuln.xml =================================================================== --- security/vuxml/vuln.xml +++ security/vuxml/vuln.xml @@ -17919,45 +17919,7 @@ - Apache Commons FileUpload -- denial of service - - - tomcat - 0 - - - tomcat7 - 7.0.70 - - - tomcat8 - 8.0.36 - - - apache-struts - 2.5.2 - - - - -

Jochen Wiedmann reports:

-
-

A malicious client can send file upload requests that cause - the HTTP server using the Apache Commons Fileupload library to become - unresponsive, preventing the server from servicing other requests.

-
- -
- - http://jvn.jp/en/jp/JVN89379547/index.html - http://mail-archives.apache.org/mod_mbox/commons-dev/201606.mbox/%3CCAF8HOZ%2BPq2QH8RnxBuJyoK1dOz6jrTiQypAC%2BH8g6oZkBg%2BCxg%40mail.gmail.com%3E - CVE-2016-3092 - - - 2016-06-21 - 2016-07-15 - 2017-03-18 - +
@@ -19128,7 +19090,7 @@ - tomcat -- remote DoS in the Apache Commons FileUpload component + Apache Commons FileUpload -- denial of service (DoS) vulnerability tomcat7 @@ -19138,6 +19100,10 @@ tomcat8 8.0.36 + + apache-struts + 2.5.2 + @@ -19158,10 +19124,12 @@ http://tomcat.apache.org/security-7.html http://tomcat.apache.org/security-8.html http://mail-archives.apache.org/mod_mbox/tomcat-announce/201606.mbox/%3C6223ece6-2b41-ef4f-22f9-d3481e492832%40apache.org%3E + http://jvn.jp/en/jp/JVN89379547/index.html 2016-06-20 2016-06-26 + 2017-08-09