天天看点

tomcat 漏洞 CVE-2016-1240 分析报告

  • ​​CVE-2016-1240 (CVE)​​
  • ​​CVE-2016-1240 (Debian)​​
  • ​​CVE-2016-1240 (Redhat)​​
  • ​​Bug 1376712 - (CVE-2016-1240) CVE-2016-1240 tomcat: unsafe chown of catalina.log in tomcat init script allows privilege escalation​​
  • ​​Red Hat Bugzilla – Attachment #1201569: Debian patch for tomcat7 for bug #1376712​​