Replacing a vulnerable catalina.jar requires full Tomcat upgrade
search cancel

Replacing a vulnerable catalina.jar requires full Tomcat upgrade

book

Article ID: 399395

calendar_today

Updated On:

Products

Autosys Workload Automation

Issue/Introduction

A security vulnerability has been identified in the catalina.jar file located within the /opt/CA/WorkloadAutomationAE/webserver/lib/ directory. Can this file be replaced on its own ?

Environment

AutoSys Workload Automation

Resolution

Just replacing the catalina.jar file on its own, to address this vulnerability is not a supported solution. Attempting to do so will lead to dependency failures and prevent the webserver/WCC from starting correctly.

To address the catalina.jar vulnerability, a full upgrade of the Tomcat webserver in /opt/CA/WorkloadAutomationAE/webserver directory to a newer version of Tomcat is required.

Follow these steps:

  1. Download the appropriate Tomcat 9.0 version 
  2. Follow the steps outlined in the Broadcom documentation to upgrade Tomcat