openSUSE-SU-2026:11400-1: moderate: tomcat10-10.1.57-1.1 on GA media

[email protected] Fri, 31 Jul 2026 17:37:06 +0200 (CEST)
Newsgroups gmane.linux.suse.security.announce
Message-ID <[email protected]>
# tomcat10-10.1.57-1.1 on GA media

Announcement ID: openSUSE-SU-2026:11400-1
Rating: moderate

Cross-References:

  * CVE-2026-59083
  * CVE-2026-59084



CVSS scores:

  * CVE-2026-59083 ( SUSE ): 8.2 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
  * CVE-2026-59084 ( SUSE ): 7.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Affected Products:

  * openSUSE Tumbleweed


An update that solves 2 vulnerabilities can now be installed.

## Description:

These are all security issues fixed in the tomcat10-10.1.57-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

  * openSUSE Tumbleweed:
    * tomcat10 10.1.57-1.1
    * tomcat10-admin-webapps 10.1.57-1.1
    * tomcat10-doc 10.1.57-1.1
    * tomcat10-docs-webapp 10.1.57-1.1
    * tomcat10-el-5_0-api 10.1.57-1.1
    * tomcat10-embed 10.1.57-1.1
    * tomcat10-jsp-3_1-api 10.1.57-1.1
    * tomcat10-jsvc 10.1.57-1.1
    * tomcat10-lib 10.1.57-1.1
    * tomcat10-servlet-6_0-api 10.1.57-1.1
    * tomcat10-webapps 10.1.57-1.1

## References:

  * https://www.suse.com/security/cve/CVE-2026-59083.html
  * https://www.suse.com/security/cve/CVE-2026-59084.html