1
PublicDateAtUSN: 2012-12-31
2
Candidate: CVE-2012-3544
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3544
6
http://mail-archives.apache.org/mod_mbox/tomcat-announce/201305.mbox/%3C518CB1D9.6020808@apache.org%3E
7
http://tomcat.apache.org/security-6.html
8
https://usn.ubuntu.com/usn/usn-1841-1
10
Apache Tomcat 6.x before 6.0.37 and 7.x before 7.0.30 does not properly
11
handle chunk extensions in chunked transfer coding, which allows remote
12
attackers to cause a denial of service by streaming data.
21
upstream: http://svn.apache.org/viewvc?view=rev&rev=1378702
22
upstream: http://svn.apache.org/viewvc?view=rev&rev=1378921
23
upstream_tomcat7: released (7.0.30)
25
precise_tomcat7: ignored (reached end-of-life)
26
precise/esm_tomcat7: DNE (precise was needed)
27
quantal_tomcat7: not-affected (7.0.30-0ubuntu1.1)
28
raring_tomcat7: not-affected
29
saucy_tomcat7: not-affected
30
trusty_tomcat7: not-affected
31
utopic_tomcat7: not-affected
32
vivid_tomcat7: not-affected
33
vivid/stable-phone-overlay_tomcat7: DNE
34
vivid/ubuntu-core_tomcat7: DNE
35
wily_tomcat7: not-affected
36
xenial_tomcat7: not-affected
37
yakkety_tomcat7: not-affected
38
zesty_tomcat7: not-affected
39
devel_tomcat7: not-affected
42
upstream: http://svn.apache.org/viewvc?view=revision&revision=1476592
43
upstream_tomcat6: released (6.0.37)
44
lucid_tomcat6: released (6.0.24-2ubuntu1.13)
45
precise_tomcat6: released (6.0.35-1ubuntu3.3)
46
precise/esm_tomcat6: released (6.0.35-1ubuntu3.3)
47
quantal_tomcat6: released (6.0.35-5ubuntu0.1)
48
raring_tomcat6: ignored (reached end-of-life)
49
saucy_tomcat6: not-affected (6.0.37-1)
50
trusty_tomcat6: not-affected (6.0.39-1)
51
utopic_tomcat6: not-affected (6.0.39-1)
52
vivid_tomcat6: not-affected (6.0.39-1)
53
vivid/stable-phone-overlay_tomcat6: DNE
54
vivid/ubuntu-core_tomcat6: DNE
55
wily_tomcat6: not-affected (6.0.39-1)
56
xenial_tomcat6: not-affected (6.0.39-1)