CVE-2007-0774
Stack-based buffer overflow in the map_uri_to_worker function (native/common/jk_uri_worker_map.c) in mod_jk.so for Apache Tomcat JK Web Server Connector 1.2.19 and 1.2.20, as used in Tomcat 4.1.34 and 5.5.20, allows remote attackers to execute arbitrary…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 81.5%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.
Description
Stack-based buffer overflow in the map_uri_to_worker function (native/common/jk_uri_worker_map.c) in mod_jk.so for Apache Tomcat JK Web Server Connector 1.2.19 and 1.2.20, as used in Tomcat 4.1.34 and 5.5.20, allows remote attackers to execute arbitrary code via a long URL that triggers the overflow in a URI worker map routine.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 81.51% probability · 100th percentile
- CISA KEV
- Not listed
- Affected
- apache/tomcat jk web server connector
- Source
- secalert@redhat.com
References
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01178795
- http://secunia.com/advisories/24398
- http://secunia.com/advisories/24558
- http://secunia.com/advisories/27037
- http://secunia.com/advisories/28711
- http://securitytracker.com/id?1017719
- http://tomcat.apache.org/connectors-doc/miscellaneous/changelog.htmlPatch
- http://tomcat.apache.org/security-jk.html
- http://www.cisco.com/en/US/products/products_security_advisory09186a008093f040.shtml
- http://www.gentoo.org/security/en/glsa/glsa-200703-16.xml
- http://www.redhat.com/support/errata/RHSA-2007-0096.html
- http://www.securityfocus.com/archive/1/461734/100/0/threaded
- http://www.securityfocus.com/bid/22791
- http://www.vupen.com/english/advisories/2007/0809
- http://www.vupen.com/english/advisories/2007/3386
- http://www.vupen.com/english/advisories/2008/0331
- http://www.zerodayinitiative.com/advisories/ZDI-07-008.htmlVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32794
- https://lists.apache.org/thread.html/277d42b48b6e9aef50949c0dcc79ce21693091d73da246b3c1981925%40%3Cdev.tomcat.apache.org%3E
- https://lists.apache.org/thread.html/5b7a23e245c93235c503900da854a143596d901bf1a1f67e851a5de4%40%3Cdev.tomcat.apache.org%3E
- https://lists.apache.org/thread.html/8d2a579bbd977c225c70cb23b0ec54865fb0dab5da3eff1e060c9935%40%3Cdev.tomcat.apache.org%3E
- https://lists.apache.org/thread.html/ba661b0edd913b39ff129a32d855620dd861883ade05fd88a8ce517d%40%3Cdev.tomcat.apache.org%3E
- https://lists.apache.org/thread.html/r5c616dfc49156e4b06ffab842800c80f4425924d0f20c452c127a53c%40%3Cdev.tomcat.apache.org%3E
- https://lists.apache.org/thread.html/rf8e8c091182b45daa50d3557cad9b10bb4198e3f08cf8f1c66a1b08d%40%3Cdev.tomcat.apache.org%3E
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5513
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01178795
- http://secunia.com/advisories/24398
- http://secunia.com/advisories/24558
- http://secunia.com/advisories/27037
- http://secunia.com/advisories/28711
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.