Advisories ยป MGASA-2025-0191

Updated tomcat packages fix security vulnerabilities

Publication date: 25 Jun 2025
Modification date: 25 Jun 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-48988 , CVE-2025-49125

Description

FileUpload large number of parts with headers DoS. (CVE-2025-48988)
Security constraint bypass for pre/post-resources. (CVE-2025-49125)
                

References

SRPMS

9/core