CVE-2016-1240

EUVD-2016-2341
The Tomcat init script in the tomcat7 package before 7.0.56-3+deb8u4 and tomcat8 package before 8.0.14-1+deb8u3 on Debian jessie and the tomcat6 and libtomcat6-java packages before 6.0.35-1ubuntu3.8 on Ubuntu 12.04 LTS, the tomcat7 and libtomcat7-java packages before 7.0.52-1ubuntu0.7 on Ubuntu 14.04 LTS, and tomcat8 and libtomcat8-java packages before 8.0.32-1ubuntu1.2 on Ubuntu 16.04 LTS allows local users with access to the tomcat account to gain root privileges via a symlink attack on the Catalina log file, as demonstrated by /var/log/tomcat7/catalina.out.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 95%
Affected Products (NVD)
VendorProductVersion
apachetomcat
6.0
apachetomcat
7.0
apachetomcat
8.0
apachetomcat
7.0
apachetomcat
8.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
tomcat6
artful
dne
bionic
dne
cosmic
dne
disco
dne
eoan
dne
focal
dne
groovy
dne
precise
Fixed 6.0.35-1ubuntu3.8
released
trusty
Fixed 6.0.39-1ubuntu0.1
released
xenial
Fixed 6.0.45+dfsg-1ubuntu0.2
released
yakkety
dne
zesty
dne
tomcat7
artful
ignored
bionic
not-affected
cosmic
not-affected
disco
dne
eoan
dne
focal
dne
groovy
dne
precise
ignored
trusty
Fixed 7.0.52-1ubuntu0.7
released
xenial
Fixed 7.0.68-1ubuntu0.3
released
yakkety
ignored
zesty
ignored
tomcat8
artful
Fixed 8.0.36-2ubuntu1
released
bionic
Fixed 8.0.36-2ubuntu1
released
cosmic
Fixed 8.0.36-2ubuntu1
released
disco
dne
eoan
dne
focal
dne
groovy
dne
precise
dne
trusty
dne
xenial
Fixed 8.0.32-1ubuntu1.2
released
yakkety
Fixed 8.0.36-2ubuntu1
released
zesty
Fixed 8.0.36-2ubuntu1
released
References