Description
An improper handing of overflow in the UTF-8 decoder with supplementary characters can lead to an infinite loop in the decoder causing a Denial of Service. Versions Affected: Apache Tomcat 9.0.0.M9 to 9.0.7, 8.5.0 to 8.5.30, 8.0.0.RC1 to 8.0.51, and 7.0.28 to 7.0.86.
Remediation
References
Related Vulnerabilities
Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-14885)
MySQL CVE-2020-2898 Vulnerability (CVE-2020-2898)
Zenphoto Other Vulnerability (CVE-2006-2187)
Oracle JRE CVE-2013-0446 Vulnerability (CVE-2013-0446)
WordPress Plugin IP Logger 'map-details.php' SQL Injection (3.0)