CVE-2008-3271

Impact:
Low
Public Date:
2008-10-09
Bugzilla:
466875: CVE-2008-3271 tomcat RemoteFilterValve Information disclosure

The MITRE CVE dictionary describes this issue as:

Apache Tomcat 5.5.0 and 4.1.0 through 4.1.31 allows remote attackers to bypass an IP address restriction and obtain sensitive information via a request that is processed concurrently with another request but in a different thread, leading to an instance-variable overwrite associated with a "synchronization problem" and lack of thread safety, and related to RemoteFilterValve, RemoteAddrValve, and RemoteHostValve.

Find out more about CVE-2008-3271 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Satellite 5.1 (RHEL v.4 AS) (tomcat5) RHSA-2008:1007 2008-12-08
Red Hat Satellite 5.0 (RHEL v.4 AS) RHSA-2008:1007 2008-12-08

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.