Lucene search

K
ubuntucveUbuntu.comUB:CVE-2006-7197
HistoryApr 25, 2007 - 12:00 a.m.

CVE-2006-7197

2007-04-2500:00:00
ubuntu.com
ubuntu.com
12

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

0.005 Low

EPSS

Percentile

77.0%

The AJP connector in Apache Tomcat 5.5.15 uses an incorrect length for
chunks, which can cause a buffer over-read in the ajp_process_callback in
mod_jk, which allows remote attackers to read portions of sensitive memory.

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

0.005 Low

EPSS

Percentile

77.0%