[SECURITY] CVE-2016-6816 Apache Tomcat Information Disclosure

2016-11-22 Thread Mark Thomas
CVE-2016-6816 Apache Tomcat Information Disclosure Severity: Important Vendor: The Apache Software Foundation Versions Affected: Apache Tomcat 9.0.0.M1 to 9.0.0.M11 Apache Tomcat 8.5.0 to 8.5.6 Apache Tomcat 8.0.0.RC1 to 8.0.38 Apache Tomcat 7.0.0 to 7.0.72 Apache Tomcat 6.0.0 to 6.0.47

[SECURITY] CVE-2016-8735 Apache Tomcat Remote Code Execution

2016-11-22 Thread Mark Thomas
CVE-2016-8735 Apache Tomcat Remote Code Execution Severity: Important Vendor: The Apache Software Foundation Versions Affected: Apache Tomcat 9.0.0.M1 to 9.0.0.M11 Apache Tomcat 8.5.0 to 8.5.6 Apache Tomcat 8.0.0.RC1 to 8.0.38 Apache Tomcat 7.0.0 to 7.0.72 Apache Tomcat 6.0.0 to 6.0.47 Earlier,

[SECURITY] CVE-2016-6817 Apache Tomcat Denial of Service

2016-11-22 Thread Mark Thomas
CVE-2016-6817 Apache Tomcat Information Disclosure Severity: Important Vendor: The Apache Software Foundation Versions Affected: Apache Tomcat 9.0.0.M1 to 9.0.0.M11 Apache Tomcat 8.5.0 to 8.5.6 Earlier versions are not affected. Description The HTTP/2 header parser entered an infinite loop if

[ANNOUNCE][CLOUDSTACK] Apache CloudStack CloudMonkey 5.3.3

2016-11-22 Thread Rohit Yadav
22 November 2016 — Apache CloudStack, proven as one of the most scalable, free and open source cloud computing operating system for large scale private, public, and hybrid clouds, today announced the availability of the latest release of Apache CloudMonkey v5.3.3, a cloud management command line