pache Tomcat contains a flaw that may lead to unauthorized disclosure of potentially sensitive information. The issue is triggered when the program sets world-readable permissions on the log directory, which may disclose information in the log to a local attacker.