CVE
- Id
- 23301
- CVE No.
- CVE-2006-7197
- Status
- Candidate
- Description
- The AJP connector in Apache Tomcat 5.5.15 uses an incorrect length for chunks, which can cause a buffer over-read in the ajp_process_callback in mod_jk, which allows remote attackers to read portions of sensitive memory.
- Phase
- Assigned (20070425)
- Votes
- None (candidate not yet proposed)
- Comments