-
tomcat7 (7.0.72-1ubuntu0.1) yakkety; urgency=medium
* Fix an upgrade error when JAVA_OPTS in /etc/default/tomcat7 contains
the '%' character (LP: #1666570).
* Fix javax.servlet.jsp POM to use servlet-api version 3.0 instead of
2.2 (LP: #1664179).
-- Joshua Powers <email address hidden> Tue, 28 Mar 2017 16:04:14 -0700
-
tomcat7 (7.0.72-1) unstable; urgency=medium
* New upstream release
-- Emmanuel Bourg <email address hidden> Tue, 20 Sep 2016 13:28:54 +0200
-
tomcat7 (7.0.70-3) unstable; urgency=high
* Team upload.
* Fixed CVE-2016-1240: A flaw in the init.d startup script allows local
attackers who have gained access to the server in the context of the
tomcat user through a vulnerability in a web application to replace
the catalina.out file with a symlink to an arbitrary file on the system,
potentially leading to a root privilege escalation.
Thanks to Dawid Golunski for the report.
-- Emmanuel Bourg <email address hidden> Wed, 14 Sep 2016 10:56:45 +0200
-
tomcat7 (7.0.70-2) unstable; urgency=medium
* Team upload.
* Do not unconditionally override files in /etc/tomcat7. (Closes: #821391)
-- Markus Koschany <email address hidden> Tue, 02 Aug 2016 11:43:11 +0200
-
tomcat7 (7.0.70-1) unstable; urgency=medium
* New upstream release
- Refreshed the patches
-- Emmanuel Bourg <email address hidden> Mon, 20 Jun 2016 10:58:56 +0200
-
tomcat7 (7.0.69-1) unstable; urgency=medium
* New upstream release
- Refreshed the patches
* Standards-Version updated to 3.9.8 (no changes)
-- Emmanuel Bourg <email address hidden> Sat, 23 Apr 2016 11:30:01 +0200
-
tomcat7 (7.0.68-1) unstable; urgency=medium
* Team upload.
* New upstream release (Closes: #814640)
- Refreshed the patches
- New build dependencies on easymock, cglib and objenesis
- Added ASM to the test classpath (required by Easymock)
* Use LC_ALL instead of LANG to format the date and make the documentation
reproducible on the builders
* Standards-Version updated to 3.9.7 (no changes)
* Use secure Vcs-* URLs
-- Emmanuel Bourg <email address hidden> Thu, 18 Feb 2016 22:26:43 +0100