Branches for Vivid

Name Status Last Modified Last Commit
lp:ubuntu/vivid/tomcat7 2 Mature 2015-03-26 00:15:03 UTC
33. * Fix FTBFS error by making sure SSL ...

Author: Miguel Landaeta
Revision Date: 2015-03-26 00:15:03 UTC

* Fix FTBFS error by making sure SSL unit tests use TLS protocols.
  - SSLv3 and previous protocols are not secure and deprecated
    in JDK7.
  - Additionally, some X509 certificates provided by upstream expired
    and were causing failures in unit tests as well, so they were
    regenerated. (Closes: #780519).
* Fix FTBFS error by disabling some unit tests that depends on
  having network access.

lp:ubuntu/vivid-security/tomcat7 2 Mature 2015-06-25 12:30:42 UTC
34. * SECURITY UPDATE: SecurityManager by...

Author: Marc Deslauriers
Revision Date: 2015-06-19 09:47:50 UTC

* SECURITY UPDATE: SecurityManager bypass via Expression Language
  - debian/patches/CVE-2014-7810.patch: handle classes that may not be
    accessible but have accessible interfaces in
    java/javax/el/BeanELResolver.java, remove unnecessary code in
    java/org/apache/jasper/runtime/PageContextImpl.java,
    java/org/apache/jasper/security/SecurityClassLoad.java.
  - CVE-2014-7810

lp:ubuntu/vivid-updates/tomcat7 2 Mature 2015-06-25 13:20:53 UTC
34. * SECURITY UPDATE: SecurityManager by...

Author: Marc Deslauriers
Revision Date: 2015-06-19 09:47:50 UTC

* SECURITY UPDATE: SecurityManager bypass via Expression Language
  - debian/patches/CVE-2014-7810.patch: handle classes that may not be
    accessible but have accessible interfaces in
    java/javax/el/BeanELResolver.java, remove unnecessary code in
    java/org/apache/jasper/runtime/PageContextImpl.java,
    java/org/apache/jasper/security/SecurityClassLoad.java.
  - CVE-2014-7810

lp:ubuntu/vivid-proposed/tomcat7 1 Development 2015-03-26 00:15:03 UTC
33. * Fix FTBFS error by making sure SSL ...

Author: Miguel Landaeta
Revision Date: 2015-03-26 00:15:03 UTC

* Fix FTBFS error by making sure SSL unit tests use TLS protocols.
  - SSLv3 and previous protocols are not secure and deprecated
    in JDK7.
  - Additionally, some X509 certificates provided by upstream expired
    and were causing failures in unit tests as well, so they were
    regenerated. (Closes: #780519).
* Fix FTBFS error by disabling some unit tests that depends on
  having network access.

14 of 4 results