RHSA-2020:0912HighCVSS 7.6

Red Hat Security Advisory: tomcat6 security update

Published
March 23, 2020
Last Modified
August 4, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2020-1938 — tomcat: Apache Tomcat AJP File Read/Inclusion Vulnerability

🎯 Affected products46

  • Red Hat Enterprise Linux Desktop Optional (v. 6)
  • Red Hat Enterprise Linux HPC Node Optional (v. 6)
  • Red Hat Enterprise Linux Server (v. 6)
  • Red Hat Enterprise Linux Server Optional (v. 6)
  • Red Hat Enterprise Linux Workstation (v. 6)
  • Red Hat Enterprise Linux Workstation Optional (v. 6)
  • tomcat6-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)
  • tomcat6-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)
  • tomcat6-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Server (v. 6)
  • tomcat6-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Workstation (v. 6)
  • tomcat6-0:6.0.24-114.el6_10.src as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)
  • tomcat6-0:6.0.24-114.el6_10.src as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)
  • tomcat6-0:6.0.24-114.el6_10.src as a component of Red Hat Enterprise Linux Server (v. 6)
  • tomcat6-0:6.0.24-114.el6_10.src as a component of Red Hat Enterprise Linux Workstation (v. 6)
  • tomcat6-admin-webapps-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)
  • tomcat6-admin-webapps-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)
  • tomcat6-admin-webapps-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Server Optional (v. 6)
  • tomcat6-admin-webapps-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)
  • tomcat6-docs-webapp-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)
  • tomcat6-docs-webapp-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)
  • tomcat6-docs-webapp-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Server Optional (v. 6)
  • tomcat6-docs-webapp-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)
  • tomcat6-el-2.1-api-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)
  • tomcat6-el-2.1-api-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)
  • tomcat6-el-2.1-api-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Server (v. 6)
  • tomcat6-el-2.1-api-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Workstation (v. 6)
  • tomcat6-javadoc-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)
  • tomcat6-javadoc-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)
  • tomcat6-javadoc-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Server Optional (v. 6)
  • tomcat6-javadoc-0:6.0.24-114.el6_10.noarch as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)
  • +16 more not shown

✅ Remediation

For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Workaround: Please refer to the Red Hat knowledgebase article: https://access.redhat.com/solutions/4851251

🔗 References (4)