Format: 1.8 Date: Thu, 10 Jan 2013 10:00:07 -0500 Source: tomcat6 Binary: tomcat6-common tomcat6 tomcat6-user libtomcat6-java libservlet2.5-java libservlet2.5-java-doc tomcat6-admin tomcat6-examples tomcat6-docs tomcat6-extras Architecture: all i386_translations Version: 6.0.32-5ubuntu1.4 Distribution: oneiric Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: libservlet2.5-java - Servlet 2.5 and JSP 2.1 Java API classes libservlet2.5-java-doc - Servlet 2.5 and JSP 2.1 Java API documentation libtomcat6-java - Servlet and JSP engine -- core libraries tomcat6 - Servlet and JSP engine tomcat6-admin - Servlet and JSP engine -- admin web applications tomcat6-common - Servlet and JSP engine -- common files tomcat6-docs - Servlet and JSP engine -- documentation tomcat6-examples - Servlet and JSP engine -- example web applications tomcat6-extras - Servlet and JSP engine -- additional components tomcat6-user - Servlet and JSP engine -- tools to create user instances Changes: tomcat6 (6.0.32-5ubuntu1.4) oneiric-security; urgency=low . * SECURITY UPDATE: security-constraint bypass with FORM auth - debian/patches/CVE-2012-3546.patch: remove unneeded code in java/org/apache/catalina/realm/RealmBase.java. - CVE-2012-3546 * SECURITY UPDATE: CSRF bypass via request with no session identifier - debian/patches/CVE-2012-4431.patch: check for session identifier in java/org/apache/catalina/filters/CsrfPreventionFilter.java. - CVE-2012-4431 * SECURITY UPDATE: denial of service with NIO connector - debian/patches/CVE-2012-4534.patch: properly handle connection breaks in java/org/apache/tomcat/util/net/NioEndpoint.java. - CVE-2012-4534 Checksums-Sha1: 37dd278f1780eb38426dde527d6a343bd7aa9422 42020 tomcat6-common_6.0.32-5ubuntu1.4_all.deb 674e89ec77c232993436b0faf481f287641bc21d 31378 tomcat6_6.0.32-5ubuntu1.4_all.deb b18ab3c86787c7ea9ed3e3062ce333af6f17d396 23004 tomcat6-user_6.0.32-5ubuntu1.4_all.deb 02aa9446dc5b254914da9918e286882f71b823de 3073700 libtomcat6-java_6.0.32-5ubuntu1.4_all.deb d3d2bdc43fbcf342b3dea58992b58d488d933457 188214 libservlet2.5-java_6.0.32-5ubuntu1.4_all.deb 3fdb4b863f8ead9a4692c725747281b3aeebf194 245420 libservlet2.5-java-doc_6.0.32-5ubuntu1.4_all.deb 0cb35f30edaf54204410cec497911ceb1b91ea73 40726 tomcat6-admin_6.0.32-5ubuntu1.4_all.deb e54cc478fe765df5725fdacb9817b8373dbaebcb 156148 tomcat6-examples_6.0.32-5ubuntu1.4_all.deb 90da009deca66e84f64db50a90fea8867bbc1537 543208 tomcat6-docs_6.0.32-5ubuntu1.4_all.deb 0918aa52f5041ac6abd156afc28de2ad6a8199fd 5802 tomcat6-extras_6.0.32-5ubuntu1.4_all.deb fbfe95703442d2c9dcb759a243c5a26b7d014ea1 6876 tomcat6_6.0.32-5ubuntu1.4_i386_translations.tar.gz Checksums-Sha256: 55229d246d13461812cdd5cb90841e9a24f7439b5b4dffbe563e26712a671b75 42020 tomcat6-common_6.0.32-5ubuntu1.4_all.deb 38b24a780c7f2ddb23c54285d55272fd0121eec8905237fd5b16f6bdcff264a9 31378 tomcat6_6.0.32-5ubuntu1.4_all.deb 7c964b39290d6f1e105bfa8506cc3811a0590a8595b7dc985523f8dee2ccdcf4 23004 tomcat6-user_6.0.32-5ubuntu1.4_all.deb 742605c441cef7808e92042dfcbc9bd9abfe5ccbf9030133481b5da33520b09d 3073700 libtomcat6-java_6.0.32-5ubuntu1.4_all.deb 4008153e27ad36582fae97064c2c32ca8f3f6f9f30dd2fad46f25efa220e38a5 188214 libservlet2.5-java_6.0.32-5ubuntu1.4_all.deb 1831ad8240f0824bb1753b1f291e9cb1de4f4906df40a184259bb73dfa726b47 245420 libservlet2.5-java-doc_6.0.32-5ubuntu1.4_all.deb 536f9cf99ade55fd804d40e28a98df5cde59d8b3d858e0698c303f80ef200cb7 40726 tomcat6-admin_6.0.32-5ubuntu1.4_all.deb 4edb27dfcc9cf1beae3f44b7391a176fb7eace1eb9ec1d4e076cffd1bd898120 156148 tomcat6-examples_6.0.32-5ubuntu1.4_all.deb 8ac288e5537ce30068c9ccd3a88470f23749bdacc876340d9349cbcd5c8973d9 543208 tomcat6-docs_6.0.32-5ubuntu1.4_all.deb f175e848a39cbab970ed3033f56f61a9d30927349c1c49da03b69b5b71c46cb1 5802 tomcat6-extras_6.0.32-5ubuntu1.4_all.deb ef3daaf75748416334f5f97c5d65ec5b58c75bc439a1198b1d5dc0642ac412d9 6876 tomcat6_6.0.32-5ubuntu1.4_i386_translations.tar.gz Files: 799a850c6db892c024491d392943b6be 42020 java optional tomcat6-common_6.0.32-5ubuntu1.4_all.deb 09a29d3c938a2f813f4820c90865f463 31378 java optional tomcat6_6.0.32-5ubuntu1.4_all.deb 59959d8e460f943b6e70b7fa0409dc38 23004 java optional tomcat6-user_6.0.32-5ubuntu1.4_all.deb 0395a97f53ea4ef004e3e6a8efd00054 3073700 java optional libtomcat6-java_6.0.32-5ubuntu1.4_all.deb 0324f1c3fca79375cb193b38b3fca069 188214 java optional libservlet2.5-java_6.0.32-5ubuntu1.4_all.deb d175b8c1b4e433976deb5c9a5b1f26b3 245420 doc optional libservlet2.5-java-doc_6.0.32-5ubuntu1.4_all.deb fc78a80b623c0929d787962c3d580157 40726 java optional tomcat6-admin_6.0.32-5ubuntu1.4_all.deb b6cda0d0327d598644285a4d44b6ddba 156148 java optional tomcat6-examples_6.0.32-5ubuntu1.4_all.deb e229f29d258571df0764b7844f2a9ea0 543208 doc optional tomcat6-docs_6.0.32-5ubuntu1.4_all.deb 3acc64fa79f8fa04961dc911f28b344d 5802 java optional tomcat6-extras_6.0.32-5ubuntu1.4_all.deb 50ca524b1c03496120726c37ef054f4e 6876 raw-translations - tomcat6_6.0.32-5ubuntu1.4_i386_translations.tar.gz Original-Maintainer: Debian Java Maintainers