{"cves":["CVE-2024-50379","CVE-2025-24813"],"cvss":0.0,"database_specific":{"severity":"MODERATE"},"description":"[1:9.0.87-2.el9_5.1]\n- Resolves: RHEL-82946\n  tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT (CVE-2025-24813)\n- Resolves: RHEL-71719\n  tomcat: RCE due to TOCTOU issue in JSP compilation (CVE-2024-50379)","id":"ELSA-2025-3645","ovalId":"oval:com.oracle.elsa:def:20253645","source":"oracle_linux","title":"ELSA-2025-3645:  tomcat security update (MODERATE)","url":"https://linux.oracle.com/errata/ELSA-2025-3645.html"}