Incorrect object recycling and reuse vulnerability in Apache Tomcat.
This issue affects Apache Tomcat: 11.0.0, 10.1.31, 9.0.96.
Users are recommended to upgrade to version 11.0.1, 10.1.32 or 9.0.97, which fixes the issue.
References
| Link | Resource |
|---|---|
| https://lists.apache.org/thread/co243cw1nlh6p521c5265cm839wkqdp9 | Vendor Advisory |
| http://www.openwall.com/lists/oss-security/2024/11/18/4 | Mailing List |
| https://security.netapp.com/advisory/ntap-20250131-0009/ | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
15 May 2025, 17:46
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Apache
Apache tomcat |
|
| CPE | cpe:2.3:a:apache:tomcat:10.1.31:*:*:*:*:*:*:* cpe:2.3:a:apache:tomcat:11.0.0:-:*:*:*:*:*:* cpe:2.3:a:apache:tomcat:9.0.96:*:*:*:*:*:*:* |
|
| References | () https://lists.apache.org/thread/co243cw1nlh6p521c5265cm839wkqdp9 - Vendor Advisory | |
| References | () http://www.openwall.com/lists/oss-security/2024/11/18/4 - Mailing List | |
| References | () https://security.netapp.com/advisory/ntap-20250131-0009/ - Third Party Advisory |
31 Jan 2025, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Information
Published : 2024-11-18 13:15
Updated : 2025-05-15 17:46
NVD link : CVE-2024-52318
Mitre link : CVE-2024-52318
CVE.ORG link : CVE-2024-52318
JSON object : View
Products Affected
apache
- tomcat
CWE
CWE-326
Inadequate Encryption Strength
