3 ms·
Any details? Is this an Apache vulnerability or a JRE one?
by java-man 6y ago
Any details? Is this an Apache vulnerability or a JRE one?
- spullara 6y agoIt looks like they are using getCanonicalPath to ensure that the file is under the serving root but there is some behavior that confused the Tomcat code. I can imagine this bug could manifest in other software that depends on this behavior on Windows.
- hangonhn 6y agoAccording to the CVE, the root cause is unexpected behavior in the JRE caused by inconsistent behavior in the Windows API.
- farnulfo 6y agoCommits: https://github.com/apache/tomcat/commit/800b03140e640f8892f27021e681645e8e320177 https://github.com/apache/tomcat/commit/800b03140e640f8892f2... Source: https://tomcat.apache.org/security-7.html#Fixed_in_Apache_Tomcat_7.0.107 https://tomcat.apache.org/security-7.html#Fixed_in_Apache_To...