PT-2014-1445 · Apache+5 · Apache Tomcat+5

Published

2014-03-27

·

Updated

2022-05-14

·

CVE-2014-0099

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Apache Tomcat versions prior to 6.0.40 Apache Tomcat versions 7.x prior to 7.0.53 Apache Tomcat versions 8.x prior to 8.0.4
Description The issue is related to an integer overflow in the Ascii.java file, which can be exploited when Apache Tomcat is operated behind a reverse proxy. This allows remote attackers to conduct HTTP request smuggling attacks via a crafted Content-Length HTTP header. The vulnerability arises because the code used to parse the request content length header did not check for overflow in the result.
Recommendations For Apache Tomcat versions prior to 6.0.40, update to version 6.0.40 or later. For Apache Tomcat versions 7.x prior to 7.0.53, update to version 7.0.53 or later. For Apache Tomcat versions 8.x prior to 8.0.4, update to version 8.0.4 or later. As a temporary workaround, consider restricting access to the Content-Length header in the HTTP request to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-00407
CESA-2014_0865
CVE-2014-0099
DSA-3447-1
DSA-3530-1
GHSA-XH5X-J8JF-PCPX
HPSBUX03102
HPSBUX03150
MGASA-2014-0268
RHSA-2014:0827
RHSA-2014:0834
RHSA-2014:0835
RHSA-2014:0843
RHSA-2014:0865
RHSA-2014_0827
RHSA-2014_0865
USN-2302-1

Affected Products

Apache Tomcat
Centos
Hp-Ux
Red Hat
Suse
Ubuntu