Advisories ยป MGASA-2025-0145

Updated tomcat packages fix security vulnerabilities

Publication date: 05 May 2025
Modification date: 05 May 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-31650 , CVE-2025-31651

Description

DoS via malformed HTTP/2 PRIORITY_UPDATE frame. (CVE-2025-31650)
Bypass of rules in Rewrite Valve. (CVE-2025-31651)
                

References

SRPMS

9/core