VYPR
Unrated severityNVD Advisory· Published Aug 15, 2011· Updated Jun 16, 2026

CVE-2011-2729

CVE-2011-2729

Description

native/unix/native/jsvc-unix.c in jsvc in the Daemon component 1.0.3 through 1.0.6 in Apache Commons, as used in Apache Tomcat 5.5.32 through 5.5.33, 6.0.30 through 6.0.32, and 7.0.x before 7.0.20 on Linux, does not drop capabilities, which allows remote attackers to bypass read permissions for files via a request to an application.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

31
  • cpe:2.3:a:apache:apache_commons_daemon:1.0.3:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:a:apache:apache_commons_daemon:1.0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:apache_commons_daemon:1.0.4:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:apache_commons_daemon:1.0.5:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:apache_commons_daemon:1.0.6:*:*:*:*:*:*:*
    • (no CPE)range: >=1.0.3, <=1.0.6
  • Apache/Tomcat25 versions
    cpe:2.3:a:apache:tomcat:5.5.32:*:*:*:*:*:*:*+ 24 more
    • cpe:2.3:a:apache:tomcat:5.5.32:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:5.5.33:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:6.0.30:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:6.0.31:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:6.0.32:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.0:beta:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.10:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.11:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.12:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.13:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.14:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.16:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.17:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.19:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.4:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.5:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.6:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.7:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.8:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:tomcat:7.0.9:*:*:*:*:*:*:*
    • (no CPE)range: 5.5.32-5.5.33, 6.0.30-6.0.32, 7.0.0-7.0.19

Patches

Vulnerability mechanics

References

30

News mentions

0

No linked articles in our index yet.