Secunia Security Advisory – Red Hat has issued an update for tomcat. This fixes a security issue and some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks, bypass certain security restrictions, or disclose sensitive information.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/72716/sa33052.txt
Source: https://packetstormsecurity.com/files/72716/Secunia-Security-Advisory-33052.html

