![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2023-42794 |
Description: | Incomplete Cleanup vulnerability in Apache Tomcat. The internal fork of Commons FileUpload packaged with Apache Tomcat 9.0.70 through 9.0.80 and 8.5.85 through 8.5.93 included an unreleased, in progress refactoring that exposed a potential denial of service on Windows if a web application opened a stream for an uploaded file but failed to close the stream. The file would never be deleted from disk creating the possibility of an eventual denial of service due to the disk being full. Users are recommended to upgrade to version 9.0.81 onwards or 8.5.94 onwards, which fixes the issue. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.170599 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2023-42794 https://lists.apache.org/thread/vvbr2ms7lockj1hlhz5q3wmxb2mwcw82 https://lists.apache.org/thread/vvbr2ms7lockj1hlhz5q3wmxb2mwcw82 http://www.openwall.com/lists/oss-security/2023/10/10/8 |