OPENSUSE-SU-2020:1063-1

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 26 Jul 2020, 10:20
Last modified:04 Feb 2026, 02:48

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

26 Jul 2020, 10:20
Published
Vulnerability first disclosed
04 Feb 2026, 02:48
Last Modified
Vulnerability information updated

Description

Security update for tomcat This update for tomcat fixes the following issues: Tomcat was updated to 9.0.36 See changelog at - CVE-2020-11996: Fixed an issue which by sending a specially crafted sequence of HTTP/2 requests could have triggered high CPU usage for several seconds making potentially the server unresponsive (bsc#1173389). This update was imported from the SUSE:SLE-15-SP2:Update update project.

Affected Systems

  • opensusetomcat&distro=openSUSE Leap 15.2

    < 9.0.36-lp152.2.3.1

References (3)