Branches for Precise

Name Status Last Modified Last Commit
lp:ubuntu/precise/tomcat7 bug 2 Mature 2012-04-11 11:08:29 UTC
12. * Handle creation of user instances w...

Author: James Page
Revision Date: 2012-04-11 10:49:51 UTC

* Handle creation of user instances with pathnames containing spaces
  (LP: #977498):
  - d/tomcat7-instance-create: Quote access to files and directories
    so that spaces can be used when creating user instances.

lp:ubuntu/precise-proposed/tomcat7 bug 2 Mature 2012-07-19 15:50:08 UTC
13. * Fix handling of JNDI lookups using ...

Author: James Page
Revision Date: 2012-07-12 21:52:17 UTC

* Fix handling of JNDI lookups using javax.naming.Name (LP: #1012794):
  - d/patches/0012-lp-1012794-fix-jndi-lookup.patch: Cherry picked patch
    from upstream VCS which ensures that JNDI lookups that use Name
    rather than String don't fail.

lp:ubuntu/precise-security/tomcat7 bug 2 Mature 2013-04-01 21:20:56 UTC
13. [Christian Kuersteiner] * SECURITY UP...

Author: Christian Kuersteiner
Revision Date: 2013-03-19 14:48:19 UTC

[Christian Kuersteiner]
* SECURITY UPDATE: Fix multiple vulnerabilities in Tomcat7
  (LP: #1115053)
  - debian/patches/0013-CVE-2012-2733.patch: Fix for Apache Tomcat Denial of
    Service. Based on upstream patch.
  - CVE-2012-2733
  - debian/patches/0014-CVE-2012-3546.patch: Fix for bypass of security
    constraints. Based on upstream patch.
  - CVE-2012-3546
  - debian/patches/0015-CVE-2012-4431.patch: Fix for bypass of CSRF prevention
    filter. Based on upstream patch.
  - CVE-2012-4431
  - debian/patches/0016-CVE-2012-4534.patch: Fix for CVE-2012-4534 Denial of
    Service Vulnerability. Based on upstream patch.
  - CVE-2012-4534
  - debian/patches/CVE-2012-3439.patch: Fix for DIGEST authentication
    weaknesses. Based on upstream patch.
  - CVE-2012-3439, CVE-2012-5885, CVE-2012-5886, 2012-5887

[ Jamie Strandboge ]
* allow for easily running the testsuite:
  - debian/control: add testsuite build-depends
  - debian/rules:
    + add 'testsuite' target
    + add ANT_TS_ARGS for use in the testsuite target
    + cleanup the testsuite
  - add debian/README.source for information on how to use the testsuite

lp:ubuntu/precise-updates/tomcat7 2 Mature 2013-03-19 14:48:19 UTC
13. [Christian Kuersteiner] * SECURITY UP...

Author: Christian Kuersteiner
Revision Date: 2013-03-19 14:48:19 UTC

[Christian Kuersteiner]
* SECURITY UPDATE: Fix multiple vulnerabilities in Tomcat7
  (LP: #1115053)
  - debian/patches/0013-CVE-2012-2733.patch: Fix for Apache Tomcat Denial of
    Service. Based on upstream patch.
  - CVE-2012-2733
  - debian/patches/0014-CVE-2012-3546.patch: Fix for bypass of security
    constraints. Based on upstream patch.
  - CVE-2012-3546
  - debian/patches/0015-CVE-2012-4431.patch: Fix for bypass of CSRF prevention
    filter. Based on upstream patch.
  - CVE-2012-4431
  - debian/patches/0016-CVE-2012-4534.patch: Fix for CVE-2012-4534 Denial of
    Service Vulnerability. Based on upstream patch.
  - CVE-2012-4534
  - debian/patches/CVE-2012-3439.patch: Fix for DIGEST authentication
    weaknesses. Based on upstream patch.
  - CVE-2012-3439, CVE-2012-5885, CVE-2012-5886, 2012-5887

[ Jamie Strandboge ]
* allow for easily running the testsuite:
  - debian/control: add testsuite build-depends
  - debian/rules:
    + add 'testsuite' target
    + add ANT_TS_ARGS for use in the testsuite target
    + cleanup the testsuite
  - add debian/README.source for information on how to use the testsuite

14 of 4 results