Skip to main content

Apache Releases Security Advisory for Apache Tomcat

Report a cyber attack: call 0300 303 5222 or email [email protected]

Affected platforms

The following platforms are known to be affected:

Threat details

The Apache Software Foundation has released a security advisory to address a vulnerability in Apache Tomcat. An attacker could exploit this vulnerability to cause a denial-of-service (DoS) condition.


Remediation advice

The Apache Software Foundation has released updates to address this vulnerability in all supported products. Affected organisations are encouraged to apply these updates immediately.


Remediation steps

Type Step
Patch

Apache Tomcat 10 users update to the following version.


http://tomcat.apache.org/security-10.html#Fixed_in_Apache_Tomcat_10.0.0-M6
Patch

Apache Tomcat 9 users update to the following version.


http://tomcat.apache.org/security-9.html#Fixed_in_Apache_Tomcat_9.0.36
Patch

Apache Tomcat 8 users update to the following version.


http://tomcat.apache.org/security-8.html#Fixed_in_Apache_Tomcat_8.5.56


Last edited: 1 July 2020 11:57 am