lp:ubuntu/oneiric-security/tomcat7
- Get this branch:
- bzr branch lp:ubuntu/oneiric-security/tomcat7
Branch merges
Branch information
Recent revisions
- 8. By Christian Kuersteiner
-
[Christian Kuersteiner]
* SECURITY UPDATE: Fix multiple vulnerabilities in Tomcat7
(LP: #1115053)
- debian/patches/ CVE-2012- 0022.patch: Fix for Denial of service. Based on
upstream patch.
- CVE-2012-0022, CVE-2011-4858
- debian/patches/ CVE-2011- 3375.patch: Fix for information disclosure. Based
on upstream patch.
- CVE-2011-3375
- debian/patches/ CVE-2011- 3376.patch: Fix for privilege escalation. Based on
upstream patch.
- CVE-2011-3376
- debian/patches/ CVE-2012- 2733.patch: Fix for Apache Tomcat Denial of
Service. Based on upstream patch.
- CVE-2012-2733
- debian/patches/ CVE-2012- 3546.patch: Fix for bypass of security
constraints. Based on upstream patch.
- CVE-2012-3546
- debian/patches/ CVE-2012- 4431.patch: Fix for bypass of CSRF prevention
filter. Based on upstream patch.
- CVE-2012-4431
- debian/patches/ CVE-2012- 4534.patch: Fix for CVE-2012-4534 Denial of
Service Vulnerability. Based on upstream patch.
- CVE-2012-4534
- debian/patches/ CVE-2012- 3439.patch: Fix for DIGEST authentication
weaknesses. Based on upstream patch.
- CVE-2012-3439, CVE-2012-5885, CVE-2012-5886, 2012-5887[ Jamie Strandboge ]
* allow for easily running the testsuite:
- debian/control: add testsuite build-depends
- debian/rules:
+ add 'testsuite' target
+ add ANT_TS_ARGS for use in the testsuite target
+ cleanup the testsuite
- add debian/README. source for information on how to use the testsuite - 7. By James Page
-
* New upstream release.
- Includes fix for CVE-2011-3190.
* Updated my email address. - 6. By Tony Mancill
-
* Team upload.
* New upstream release.
- Includes fix for CVE-2011-2526 (Closes: #634992)
* Remove patch for CVE-2011-2204 (included upstream). - 5. By Tony Mancill
-
* Team upload.
* Correct Suggests: for libtcnative-1 (tomcat-native)
* Add patch for CVE-2011-2204 (Closes: #632882) - 4. By Tony Mancill
-
Restore tomcat-juli.jar link in /usr/share/
tomcat7/ bin.
Thank you to Kristof Csillag for the bug report. (Closes: #631667) - 3. By Tony Mancill
-
[ Miguel Landaeta ]
* New upstream release.
* Add missing deps and symlinks for commons-pool ands commons-dbcp jars.[ tony mancill ]
* Add logrotate file for catalina.out.
* Add build-arch target to debian/rules. - 2. By Tony Mancill
-
* Team upload.
* New upstream release.
Thank you to Ernesto Hernández-Novich for providing the basis of
this packaging.
Branch metadata
- Branch format:
- Branch format 7
- Repository format:
- Bazaar repository format 2a (needs bzr 1.16 or later)
- Stacked on:
- lp:ubuntu/raring/tomcat7