Important: Denial of service
CVE-2005-0808
Tomcat 3.x can be remotely caused to crash or shutdown by a connection
sending the right sequence of bytes to the AJP12 protocol port (TCP 8007
by default). Tomcat 3.x users are advised to ensure that this port is
adequately firewalled to ensure it is not accessible to remote attackers.
There are no plans to issue a an update to Tomcat 3.x for this issue.
Affects: 3.0, 3.1-3.1.1, 3.2-3.2.4, 3.3a-3.3.2
Low: Session hi-jacking
CVE-2007-3382
Tomcat incorrectly treated a single quote character (') in a cookie
value as a delimiter. In some circumstances this lead to the leaking of
information such as session ID to an attacker.
Affects: 3.3-3.3.2
Low: Cross site scripting
CVE-2007-3384
When reporting error messages, Tomcat does not filter user supplied data
before display. This enables an XSS attack. A source patch is available
from the
archives.
Affects: 3.3-3.3.2
Low: Session hi-jacking
CVE-2007-3385
Tomcat incorrectly handled the character sequence \" in a cookie value.
In some circumstances this lead to the leaking of information such as
session ID to an attacker.
Affects: 3.3-3.3.2