CVE-2014-0186

Red Hat Enterprise Linux 7 - Denial of Service via Crafted Tomcat7 Request

Title source: llm
STIX 2.1

Description

A certain tomcat7 package for Apache Tomcat 7 in Red Hat Enterprise Linux (RHEL) 7 allows remote attackers to cause a denial of service (CPU consumption) via a crafted request. NOTE: this vulnerability exists because of an unspecified regression.

References (4)

Core 4
Core References
Vendor Advisory vendor-advisory x_refsource_redhat
https://rhn.redhat.com/errata/RHSA-2014-0686.html
Issue Tracking x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=1089884
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/108060
Third Party Advisory x_refsource_misc
https://security-tracker.debian.org/tracker/CVE-2014-0186

Scores

EPSS 0.0244
EPSS Percentile 82.6%

Details

Status published
Products (1)
redhat/enterprise_linux 7.0
Published Jun 14, 2014
Tracked Since Feb 18, 2026