The AJP connector in Apache Tomcat 5.5.15 uses an incorrect length for chunks, which can cause a buffer over-read in the ajp_process_callback in mod_jk, which allows remote attackers to read portions of sensitive memory.
References
Configurations
History
No history.
Information
Published : 2007-04-25 20:19
Updated : 2024-02-04 17:13
NVD link : CVE-2006-7197
Mitre link : CVE-2006-7197
CVE.ORG link : CVE-2006-7197
JSON object : View
Products Affected
apache
- tomcat
CWE