Format: 1.8 Date: Thu, 10 Jan 2013 09:51:09 -0500 Source: tomcat6 Binary: tomcat6-common tomcat6 tomcat6-user libtomcat6-java libservlet2.5-java libservlet2.5-java-doc tomcat6-admin tomcat6-examples tomcat6-docs tomcat6-extras Architecture: all i386_translations Version: 6.0.35-1ubuntu3.2 Distribution: precise Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: libservlet2.5-java - Servlet 2.5 and JSP 2.1 Java API classes libservlet2.5-java-doc - Servlet 2.5 and JSP 2.1 Java API documentation libtomcat6-java - Servlet and JSP engine -- core libraries tomcat6 - Servlet and JSP engine tomcat6-admin - Servlet and JSP engine -- admin web applications tomcat6-common - Servlet and JSP engine -- common files tomcat6-docs - Servlet and JSP engine -- documentation tomcat6-examples - Servlet and JSP engine -- example web applications tomcat6-extras - Servlet and JSP engine -- additional components tomcat6-user - Servlet and JSP engine -- tools to create user instances Changes: tomcat6 (6.0.35-1ubuntu3.2) precise-security; urgency=low . * SECURITY UPDATE: security-constraint bypass with FORM auth - debian/patches/CVE-2012-3546.patch: remove unneeded code in java/org/apache/catalina/realm/RealmBase.java. - CVE-2012-3546 * SECURITY UPDATE: CSRF bypass via request with no session identifier - debian/patches/CVE-2012-4431.patch: check for session identifier in java/org/apache/catalina/filters/CsrfPreventionFilter.java. - CVE-2012-4431 * SECURITY UPDATE: denial of service with NIO connector - debian/patches/CVE-2012-4534.patch: properly handle connection breaks in java/org/apache/tomcat/util/net/NioEndpoint.java. - CVE-2012-4534 Checksums-Sha1: fad4cf9a9d04b011b6c11e3b94d554de39037d4d 41072 tomcat6-common_6.0.35-1ubuntu3.2_all.deb 450c2819b3b774ed934d684df5e620449037b6f5 29180 tomcat6_6.0.35-1ubuntu3.2_all.deb ca0afd0f510221033345dc4d8d745b6d176f7f7f 20280 tomcat6-user_6.0.35-1ubuntu3.2_all.deb 083832f5cbf3304bbc23b06215ea6e8563b5cdd0 3086094 libtomcat6-java_6.0.35-1ubuntu3.2_all.deb a7e9c505c7be375f2fc7b31dfaed91061aacf0a7 187272 libservlet2.5-java_6.0.35-1ubuntu3.2_all.deb 2168c785ea7df0f71826319389ca0fef3e934a22 245044 libservlet2.5-java-doc_6.0.35-1ubuntu3.2_all.deb 4f37982e47bbfab42eec433ab8a067f2e17b71de 39160 tomcat6-admin_6.0.35-1ubuntu3.2_all.deb 776cb61cd165123003b7f855059f9220489e0230 156330 tomcat6-examples_6.0.35-1ubuntu3.2_all.deb 21c1397ef84440c98190caaaeb7a13cba45a69a6 556742 tomcat6-docs_6.0.35-1ubuntu3.2_all.deb b03d5bfa17271707e85469f19ca2fc51148accf0 5548 tomcat6-extras_6.0.35-1ubuntu3.2_all.deb b3518c62ec95e8457e4a8ef0a6d2ffafc32d2ab9 7833 tomcat6_6.0.35-1ubuntu3.2_i386_translations.tar.gz Checksums-Sha256: e3060af1262fcadf71acc72af3ff2e3cf7fc321dc25c518e5b4c5a7d71ba116c 41072 tomcat6-common_6.0.35-1ubuntu3.2_all.deb 873ebb3095a2da5de78bcd7f0846bb1f2bddaf0a7ef4fc6d51500099ebc6543f 29180 tomcat6_6.0.35-1ubuntu3.2_all.deb d514c5e16b3ee14ef9546c7d7c287710ea0a9661e787880c62401b58d410b09e 20280 tomcat6-user_6.0.35-1ubuntu3.2_all.deb 66c5eb7a7884c968a435a057af2c2c2999a021ce0d99a7b2183c8b0b8a2d829b 3086094 libtomcat6-java_6.0.35-1ubuntu3.2_all.deb 533b0a12c6b468198c84e881ecfbe8d595fa357d63829d0ce97fb11696edd9dc 187272 libservlet2.5-java_6.0.35-1ubuntu3.2_all.deb 35708185c001b1f5ebc5b6c46343684096f9816436992fd59d8c5f1dcc37be79 245044 libservlet2.5-java-doc_6.0.35-1ubuntu3.2_all.deb d74781d8a3a790380627ab40c7e23165a6dba8f255ed0a74a9ac7c3c8dc0e590 39160 tomcat6-admin_6.0.35-1ubuntu3.2_all.deb aa7da91bb55e45af5caba7d2cdc80b8db51c3cbd44ec91be4116d6ab9c38d95f 156330 tomcat6-examples_6.0.35-1ubuntu3.2_all.deb 0b9ee03017380b279b244e77859c80c0b3620b62b8bf88b923eb5478637fd197 556742 tomcat6-docs_6.0.35-1ubuntu3.2_all.deb 08aa52507c0ae376128c451c452042c3b00f4e69fd0db3b9b0611f6d957b89b4 5548 tomcat6-extras_6.0.35-1ubuntu3.2_all.deb 800869e6ed60d471f6494ea93bfac5a24cef248f15b81f05e8958ea90dc258c4 7833 tomcat6_6.0.35-1ubuntu3.2_i386_translations.tar.gz Files: 78b60ebbaba4a8179fb121bb47b50b08 41072 java optional tomcat6-common_6.0.35-1ubuntu3.2_all.deb 09dd0b83efcebf9f6cf70c03d83d7496 29180 java optional tomcat6_6.0.35-1ubuntu3.2_all.deb 1164bec78191165cdce31b915763a4d8 20280 java optional tomcat6-user_6.0.35-1ubuntu3.2_all.deb f8354e611c44ab7710de4dfec8d03c26 3086094 java optional libtomcat6-java_6.0.35-1ubuntu3.2_all.deb 12eddd54a69374e26464ab42afafbcac 187272 java optional libservlet2.5-java_6.0.35-1ubuntu3.2_all.deb 4fa6dde34225ed4615ebb89b3b6124ad 245044 doc optional libservlet2.5-java-doc_6.0.35-1ubuntu3.2_all.deb 23be2953a0e2be2c586354d66dd3f58f 39160 java optional tomcat6-admin_6.0.35-1ubuntu3.2_all.deb a66207e52e6143a594f9126d8eb62417 156330 java optional tomcat6-examples_6.0.35-1ubuntu3.2_all.deb 3c0bcc09be35c224ea0735f8495df282 556742 doc optional tomcat6-docs_6.0.35-1ubuntu3.2_all.deb 08c38c44a4e3569af4e151dafc2319da 5548 java optional tomcat6-extras_6.0.35-1ubuntu3.2_all.deb c3efb5671a2f066d02b24078212cc2d2 7833 raw-translations - tomcat6_6.0.35-1ubuntu3.2_i386_translations.tar.gz Original-Maintainer: Debian Java Maintainers