5 Medium
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:N/I:N/A:P
0.718 High
EPSS
Percentile
98.1%
Apache Tomcat 6.x before 6.0.37 and 7.x before 7.0.30 does not properly
handle chunk extensions in chunked transfer coding, which allows remote
attackers to cause a denial of service by streaming data.
mail-archives.apache.org/mod_mbox/tomcat-announce/201305.mbox/%[email protected]%3E
tomcat.apache.org/security-6.html
launchpad.net/bugs/cve/CVE-2012-3544
nvd.nist.gov/vuln/detail/CVE-2012-3544
security-tracker.debian.org/tracker/CVE-2012-3544
ubuntu.com/security/notices/USN-1841-1
www.cve.org/CVERecord?id=CVE-2012-3544