CVE-2013-2051: Red Hat Enterprise Linux

Low severity, CVSS 2.6. EPSS: 2.1% chance of exploitation in the next 30 days.

The Tomcat 6 DIGEST authentication functionality as used in Red Hat Enterprise Linux 6 allows remote attackers to bypass intended access restrictions by performing a replay attack after a nonce becomes stale. NOTE: this issue is due to an incomplete fix for CVE-2012-5887.

Affected products

  • Red Hat Enterprise Linux: version 6.0 only

Published 2013-07-09. Last modified 2026-06-16.