Branches for Natty

Name Status Last Modified Last Commit
lp://staging/ubuntu/natty/tomcat6 bug 2 Mature 2011-03-16 14:15:47 UTC
34. debian/tomcat6-instance-create: Eclip...

Author: Abhinav Upadhyay
Revision Date: 2011-03-11 13:55:28 UTC

debian/tomcat6-instance-create: Eclipse can now be configured to use a user instance
of tomcat6 using tomcat6-instance-create without any additional work.
tomcat6-instance-create will setup all the necessary symlinks to make eclipse work.
(Closes: #551091) (LP: #297675)

lp://staging/ubuntu/natty-proposed/tomcat6 2 Mature 2012-05-04 23:14:32 UTC
36. * SECURITY UPDATE: denial of service ...

Author: Marc Deslauriers
Revision Date: 2012-01-25 13:42:23 UTC

* SECURITY UPDATE: denial of service via hash collision and incorrect
  handling of large numbers of parameters and parameter values
  (LP: #909828)
  - debian/patches/0019-CVE-2012-0022.patch: refactor parameter handling
    code in conf/web.xml,
    java/org/apache/catalina/connector/Connector.java,
    java/org/apache/catalina/connector/mbeans-descriptors.xml,
    java/org/apache/catalina/connector/Request.java,
    java/org/apache/catalina/filters/FailedRequestFilter.java,
    java/org/apache/catalina/Globals.java,
    java/org/apache/coyote/Request.java,
    java/org/apache/tomcat/util/buf/B2CConverter.java,
    java/org/apache/tomcat/util/buf/ByteChunk.java,
    java/org/apache/tomcat/util/buf/MessageBytes.java,
    java/org/apache/tomcat/util/buf/StringCache.java,
    java/org/apache/tomcat/util/http/LocalStrings.properties,
    java/org/apache/tomcat/util/http/Parameters.java,
    webapps/docs/config/ajp.xml,
    webapps/docs/config/http.xml.
  - CVE-2011-4858
  - CVE-2012-0022

lp://staging/ubuntu/natty-security/tomcat6 bug 2 Mature 2012-05-04 23:15:32 UTC
36. * SECURITY UPDATE: denial of service ...

Author: Marc Deslauriers
Revision Date: 2012-01-25 13:42:23 UTC

* SECURITY UPDATE: denial of service via hash collision and incorrect
  handling of large numbers of parameters and parameter values
  (LP: #909828)
  - debian/patches/0019-CVE-2012-0022.patch: refactor parameter handling
    code in conf/web.xml,
    java/org/apache/catalina/connector/Connector.java,
    java/org/apache/catalina/connector/mbeans-descriptors.xml,
    java/org/apache/catalina/connector/Request.java,
    java/org/apache/catalina/filters/FailedRequestFilter.java,
    java/org/apache/catalina/Globals.java,
    java/org/apache/coyote/Request.java,
    java/org/apache/tomcat/util/buf/B2CConverter.java,
    java/org/apache/tomcat/util/buf/ByteChunk.java,
    java/org/apache/tomcat/util/buf/MessageBytes.java,
    java/org/apache/tomcat/util/buf/StringCache.java,
    java/org/apache/tomcat/util/http/LocalStrings.properties,
    java/org/apache/tomcat/util/http/Parameters.java,
    webapps/docs/config/ajp.xml,
    webapps/docs/config/http.xml.
  - CVE-2011-4858
  - CVE-2012-0022

lp://staging/ubuntu/natty-updates/tomcat6 2 Mature 2012-01-25 13:42:23 UTC
36. * SECURITY UPDATE: denial of service ...

Author: Marc Deslauriers
Revision Date: 2012-01-25 13:42:23 UTC

* SECURITY UPDATE: denial of service via hash collision and incorrect
  handling of large numbers of parameters and parameter values
  (LP: #909828)
  - debian/patches/0019-CVE-2012-0022.patch: refactor parameter handling
    code in conf/web.xml,
    java/org/apache/catalina/connector/Connector.java,
    java/org/apache/catalina/connector/mbeans-descriptors.xml,
    java/org/apache/catalina/connector/Request.java,
    java/org/apache/catalina/filters/FailedRequestFilter.java,
    java/org/apache/catalina/Globals.java,
    java/org/apache/coyote/Request.java,
    java/org/apache/tomcat/util/buf/B2CConverter.java,
    java/org/apache/tomcat/util/buf/ByteChunk.java,
    java/org/apache/tomcat/util/buf/MessageBytes.java,
    java/org/apache/tomcat/util/buf/StringCache.java,
    java/org/apache/tomcat/util/http/LocalStrings.properties,
    java/org/apache/tomcat/util/http/Parameters.java,
    webapps/docs/config/ajp.xml,
    webapps/docs/config/http.xml.
  - CVE-2011-4858
  - CVE-2012-0022

lp://staging/~james-page/ubuntu/natty/tomcat6/CVE-2011-3190 bug 1 Development 2011-09-26 10:01:22 UTC
35. * SECURITY UPDATE: Apache Tomcat Auth...

Author: James Page
Revision Date: 2011-09-26 10:00:18 UTC

* SECURITY UPDATE: Apache Tomcat Authentication bypass and information
  disclosure (LP: #843701).
 - d/patches/0015-CVE-2011-3190.patch: Patch from upstream to Prevent AJP
   request forgery via unread request body packet.
 - CVE-2011-3190

lp://staging/~james-page/ubuntu/natty/tomcat6/fix-662588 bug(Has a merge proposal) 1 Development 2010-11-08 13:46:28 UTC
27. * Build-depend on ant/ant-optional (1...

Author: James Page
Revision Date: 2010-11-08 13:45:08 UTC

* Build-depend on ant/ant-optional (1.8.1)
* Amended debian/rules, fix xslt processing in ant 1.8.1 to
  fix FTBFS (LP: #662588)

16 of 6 results