tomcat7 7.0.30-0ubuntu1.2 source package in Ubuntu

Changelog

tomcat7 (7.0.30-0ubuntu1.2) quantal-security; urgency=low

  * SECURITY UPDATE: FORM authentication request injection
    - debian/patches/CVE-2013-2067.patch: properly change session ID
      in java/org/apache/catalina/authenticator/FormAuthenticator.java.
    - CVE-2013-2067
  * SECURITY UPDATE: information leak via AsyncListeners and
    RuntimeExceptions (LP: #1178645)
    - debian/patches/CVE-2013-2071.patch: catch RuntimeExceptions in
      java/org/apache/catalina/core/AsyncContextImpl.java, added tests to
      test/org/apache/catalina/core/TestAsyncContextImpl.java.
    - CVE-2013-2071
  * Fix FTBFS due to expired test certificates:
    - d/keystores/*.jks: Newer keystores from upstream 7.0.39.
    - d/rules: Install newer keystores for testing, tidy up after use.
    - d/p/0018-update-test-certificates.patch: Cherry picked fixes from
      upstream VCS to update text based certificates.
 -- Marc Deslauriers <email address hidden>   Thu, 23 May 2013 09:04:36 -0400

Upload details

Uploaded by:
Marc Deslauriers on 2013-05-23
Uploaded to:
Quantal
Original maintainer:
Ubuntu Developers
Architectures:
all
Section:
java
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Quantal: [FULLYBUILT] i386

Downloads

File Size SHA-256 Checksum
tomcat7_7.0.30.orig.tar.gz 3.8 MiB 77c92931da577d97bb8c46b75b272f900088a8c92f8b80d5c764e50ebd79ac7c
tomcat7_7.0.30-0ubuntu1.2.debian.tar.gz 71.2 KiB b6f26fa28dc39637ae8239895836ff39dd9b7be06ca575b5b7ef41a6359f114e
tomcat7_7.0.30-0ubuntu1.2.dsc 2.7 KiB 07f414c73854be42d0a286ea14c1bf4ef29341f28429515e6f7df5083db1592e

View changes file

Binary packages built by this source

libservlet3.0-java: No summary available for libservlet3.0-java in ubuntu quantal.

No description available for libservlet3.0-java in ubuntu quantal.

libservlet3.0-java-doc: No summary available for libservlet3.0-java-doc in ubuntu quantal.

No description available for libservlet3.0-java-doc in ubuntu quantal.

libtomcat7-java: No summary available for libtomcat7-java in ubuntu quantal.

No description available for libtomcat7-java in ubuntu quantal.

tomcat7: No summary available for tomcat7 in ubuntu quantal.

No description available for tomcat7 in ubuntu quantal.

tomcat7-admin: No summary available for tomcat7-admin in ubuntu quantal.

No description available for tomcat7-admin in ubuntu quantal.

tomcat7-common: No summary available for tomcat7-common in ubuntu quantal.

No description available for tomcat7-common in ubuntu quantal.

tomcat7-docs: No summary available for tomcat7-docs in ubuntu quantal.

No description available for tomcat7-docs in ubuntu quantal.

tomcat7-examples: No summary available for tomcat7-examples in ubuntu quantal.

No description available for tomcat7-examples in ubuntu quantal.

tomcat7-user: No summary available for tomcat7-user in ubuntu quantal.

No description available for tomcat7-user in ubuntu quantal.