Lucene search

K
githubGitHub Advisory DatabaseGHSA-CX6H-86XW-9X34
HistoryJul 06, 2023 - 9:14 p.m.

Apache Tomcat - Fix for CVE-2023-24998 was incomplete

2023-07-0621:14:59
CWE-193
GitHub Advisory Database
github.com
20
apache tomcat
cve-2023-24998
http connector
maxparametercount
query string
denial of service

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

0.034 Low

EPSS

Percentile

91.4%

The fix for CVE-2023-24998 was incomplete. If non-default HTTP connector settings were used such that the maxParameterCount could be reached using query string parameters and a request was submitted that supplied exactly maxParameterCount parameters in the query string, the limit for uploaded request parts could be bypassed with the potential for a denial of service to occur.

Affected configurations

Vulners
Node
org.apache.tomcat\tomcatMatchcoyote
OR
github_advisory_databaseorg.apache.tomcat.embed\Matchtomcat-embed-core
OR
github_advisory_databaseorg.apache.tomcat.embed\Matchtomcat-embed-core
OR
github_advisory_databaseorg.apache.tomcat.embed\Matchtomcat-embed-core

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

0.034 Low

EPSS

Percentile

91.4%