|
Brought to you by:
Suppliers of:
|
|
|
| |
| Situations where faulty clients set Content-Length without providing data, or where a user submits repeated requests very quickly may permit one user to view the Apache Tomcat mod_jk response associated with a different user's request. |
| |
Credit:
The information has been provided by Mark Thomas.
|
| |
Vulnerable Systems:
* mod_jk version 1.2.0 up to version 1.2.26
Immune Systems:
* mod_jk version 1.2.27 or newer
CVE Information:
CVE-2008-5519
|
|
|
|
|