AVG-1196 log

Package tomcat9
Status Fixed
Severity Medium
Type denial of service
Affected 9.0.35-1
Fixed 9.0.37-1
Current 9.0.87-1 [extra]
Ticket None
Created Sun Jun 28 16:15:55 2020
Issue Severity Remote Type Description
CVE-2020-11996 Medium Yes Denial of service
A denial of service has been found in Apache Tomcat before 9.0.36 and 8.5.56, where a specially crafted sequence of HTTP/2 requests could trigger high CPU...
References
https://www.openwall.com/lists/oss-security/2020/06/25/6