CVE-2012-5568
published 2012-11-30CVE-2012-5568: Apache Tomcat through 7.0.x allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by Slowloris.
PriorityP425medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
9.59%
95.0th percentile
Apache Tomcat through 7.0.x allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by Slowloris.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | tomcat | 7.0.0 – 7.0.105 | — |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
http://captainholly.wordpress.com/2009/06/19/slowloris-vs-tomcat/http://lists.opensuse.org/opensuse-updates/2012-12/msg00089.htmlhttp://lists.opensuse.org/opensuse-updates/2012-12/msg00090.htmlhttp://lists.opensuse.org/opensuse-updates/2013-01/msg00037.htmlhttp://openwall.com/lists/oss-security/2012/11/26/2http://tomcat.10.n6.nabble.com/How-does-Tomcat-handle-a-slow-HTTP-DoS-tc2147776.htmlhttp://tomcat.10.n6.nabble.com/How-does-Tomcat-handle-a-slow-HTTP-DoS-tc2147779.htmlhttp://www.securityfocus.com/bid/56686https://bugzilla.redhat.com/show_bug.cgi?id=880011https://exchange.xforce.ibmcloud.com/vulnerabilities/80317http://captainholly.wordpress.com/2009/06/19/slowloris-vs-tomcat/http://lists.opensuse.org/opensuse-updates/2012-12/msg00089.htmlhttp://lists.opensuse.org/opensuse-updates/2012-12/msg00090.htmlhttp://lists.opensuse.org/opensuse-updates/2013-01/msg00037.htmlhttp://openwall.com/lists/oss-security/2012/11/26/2http://tomcat.10.n6.nabble.com/How-does-Tomcat-handle-a-slow-HTTP-DoS-tc2147776.htmlhttp://tomcat.10.n6.nabble.com/How-does-Tomcat-handle-a-slow-HTTP-DoS-tc2147779.htmlhttp://www.securityfocus.com/bid/56686https://bugzilla.redhat.com/show_bug.cgi?id=880011https://exchange.xforce.ibmcloud.com/vulnerabilities/80317
2012-11-30
Published