Apache Tomcat CVE-2014-0095 Input Validation Bypass Vulnerability

description-logoDescription

A regression was introduced in 1519838 that caused AJP requests to hang if an explicit content length of zero was set on the request. The hanging request consumed a request processing thread which could lead to a denial of service.

affected-products-logoAffected Applications

Apache Tomcat

CVE References

CVE-2014-0095