Commit Graph

202 Commits

Author SHA1 Message Date
Coty Sutherland
8703348dd0 Update to 8.5.30 2018-05-01 09:50:53 -04:00
Coty Sutherland
6a221faa62 Forgot to add changelog entires for the CVEs 2018-03-16 11:32:52 -04:00
Coty Sutherland
62602785be Disable failOnWarning so that javadoc won't fail the build 2018-03-15 13:52:10 -04:00
Coty Sutherland
1f223663ca Forgot to rename service scripts, etc for the 8.5 rebase 2018-03-15 13:05:24 -04:00
Coty Sutherland
7b1948b119 Adding sources for 8.5.29 2018-03-15 12:59:10 -04:00
Coty Sutherland
dad1e77dc2 Rebase to 8.5.29! Finally :) 2018-03-15 12:57:12 -04:00
Igor Gnatenko
5a99f40808 Escape macros in %changelog
Reference: https://lists.fedoraproject.org/archives/list/devel@lists.fedoraproject.org/thread/Y2ZUKK2B7T2IKXPMODNF6HB2O5T5TS6H/
Signed-off-by: Igor Gnatenko <ignatenkobrain@fedoraproject.org>
2018-02-09 09:06:26 +01:00
Coty Sutherland
cf8509a357 The tomcat-native binary is no longer copied to bin. See http://svn.apache.org/r1818186 for more details 2018-02-01 10:09:27 -05:00
Coty Sutherland
586be331e6 Fix release for rebase 2018-02-01 08:54:42 -05:00
Coty Sutherland
f083e18135 Merge branch 'master' of ssh://pkgs.fedoraproject.org/rpms/tomcat 2018-02-01 08:52:17 -05:00
Coty Sutherland
d28664612b Update to 8.0.49 2018-02-01 08:48:31 -05:00
Merlin Mathesius
56956f7ea7 Cleanup spec file conditionals 2017-12-12 09:14:28 -06:00
Troy Dawson
83edb0c5e8 Change "zip -u" to "zip"
Resolves: rhbz#1495241 [tomcat] zip -u in spec file causes race condition
2017-10-24 10:12:21 -05:00
Coty Sutherland
f62ae76aa7 Update to 8.0.47
Resolves: rhbz#1497682 CVE-2017-12617 tomcat: Remote Code Execution bypass for CVE-2017-12615
2017-10-04 08:57:15 -04:00
Coty Sutherland
c154cf4359 Adding temporary workaround for add_maven_depmap deprecation 2017-08-21 11:28:50 -04:00
Coty Sutherland
95abd8ee71 Release 1 instead of 2 2017-08-21 10:54:20 -04:00
Coty Sutherland
623e2f2fe0 Resolves: rhbz#1480620 CVE-2017-7674 tomcat: Cache Poisoning 2017-08-21 10:36:47 -04:00
Fedora Release Engineering
ac7bc260a5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild 2017-07-27 20:25:50 +00:00
Coty Sutherland
e1abf5cd6d Updated sources with rhpkg instead of fedpkg accidentally. Fixing that 2017-06-09 15:46:39 -04:00
Coty Sutherland
85038a7beb Resolves: rhbz#1459160 CVE-2017-5664 tomcat: Security constrained bypass in error page mechanism 2017-06-09 15:39:00 -04:00
Coty Sutherland
ed0c45ddd8 Update to 8.0.43 2017-04-11 09:03:00 -04:00
Coty Sutherland
0f6fb39098 Update to 8.0.42 2017-03-31 09:28:51 -04:00
Coty Sutherland
bcf38b1abe Resolves: rhbz#1403825 CVE-2016-8745 tomcat: information disclosure due to incorrect Processor sharing
Update to 8.0.41
2017-02-16 15:34:48 -05:00
Fedora Release Engineering
e0f6e3167b - Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild 2017-02-11 16:07:14 +00:00
Coty Sutherland
71d81d1e1e Resolves: rhbz#1397493 CVE-2016-6816 CVE-2016-6817 CVE-2016-8735 tomcat: various flaws
Update to 8.0.39
2016-11-29 17:28:09 -05:00
Coty Sutherland
387c0999f6 Update to 8.0.38 2016-10-25 11:04:12 -04:00
Coty Sutherland
ca7279eaa6 I forgot to bump the release 2016-10-23 19:33:16 -04:00
Coty Sutherland
6452f0b23b Resolves: rhbz#1383216 CVE-2016-6325 tomcat: tomcat writable config files allow privilege escalation 2016-10-23 19:11:56 -04:00
Coty Sutherland
ca41eb1168 Resolves: rhbz#1382310 CVE-2016-5425 tomcat: Local privilege escalation via systemd-tmpfiles service 2016-10-13 05:00:29 -04:00
Coty Sutherland
55c043f429 Resolves: rhbz#1370262 catalina.out is no longer in use in the main package, but still gets rotated 2016-09-13 14:44:55 -04:00
Coty Sutherland
fe6d560133 Resolves: rhbz#1375581 CVE-2016-5388 CGI sets environmental variable based on user supplied Proxy request header 2016-09-13 13:03:04 -04:00
Coty Sutherland
d5efee4acc Related: rhbz#1349469 Correct typo in changelog entry 2016-08-11 14:05:55 -04:00
Coty Sutherland
d64bf2e904 Resolves: asfbz#59960 Building javadocs with java8 fails 2016-08-08 17:34:21 -04:00
Coty Sutherland
2b099c582b Resolves: rhbz#1359737 Missing maven depmap for the following artifacts: org.apache.tomcat:tomcat-websocket, org.apache.tomcat:tomcat-websocket-api 2016-08-08 16:38:52 -04:00
Coty Sutherland
ea624b1371 Resolves: rhbz#1341850 tomcat-jsvc.service has TOMCAT_USER value hard-coded 2016-08-08 15:37:15 -04:00
Coty Sutherland
b6ffa60f91 Resolves: rhbz#1341853 rpm -V tomcat fails on /var/log/tomcat/catalina.out 2016-08-08 15:36:36 -04:00
Coty Sutherland
4dc51a6a96 Resolves: rhbz#1347835 The security manager doesn't work correctly (JSPs cannot be compiled) 2016-08-08 15:34:21 -04:00
Coty Sutherland
5d682aa9e1 Resolves: rhbz#1347864 The systemd service unit does not allow tomcat to shut down gracefully 2016-08-08 15:32:57 -04:00
Coty Sutherland
50c91f3fe2 Resolves: rhbz#1349469 CVE-2016-3092 tomcat: Usage of vulnerable FileUpload package can result in denial of service (updates to 8.0.36) 2016-08-08 15:31:26 -04:00
Coty Sutherland
43760819ea Resolves: rhbz#1363884 The tomcat-tool-wrapper script is broken 2016-08-08 15:27:41 -04:00
Coty Sutherland
6bc593d2cc Resolves: rhbz#1364056 The command tomcat-digest doesn't work 2016-08-08 15:25:59 -04:00
Ivan Afonichev
7d21a720d9 Add /etc/tomcat/conf.d/ with shell expansion support, resolves rhbz#1293636 2016-03-02 20:53:07 +03:00
Ivan Afonichev
e0ea77351d Revert sysconfig migration 2016-03-02 20:26:19 +03:00
Ivan Afonichev
ef1b76e880 Fix non-service use and default datasource factory
- Load sysconfig from tomcat.conf, resolves: rhbz#1311771, rhbz#1311905
- Set default javax.sql.DataSource factory to apache commons one, resolves rhbz#1214381
- Fix changelog
2016-02-27 18:26:53 +03:00
Ivan Afonichev
d6fc5df332 [rhbz#1308685] Fix symlinks from $CATALINA_HOME/lib perspective 2016-02-21 23:53:01 +03:00
Ivan Afonichev
65e6257e50 Add Recommends: tomcat-native 2016-02-14 01:44:02 +03:00
Ivan Afonichev
7977e008b9 Updated to 8.0.32
- Remove log4j support. It has never been working actually. See rhbz#1236297
2016-02-14 01:08:21 +03:00
Ivan Afonichev
3bf9b4c925 Switch non-primary service files to sysconfig 2016-02-13 23:58:35 +03:00
Ivan Afonichev
9d76b53468 Set TOMCAT_CFG_LOADED in tomcat.conf 2016-02-13 23:58:24 +03:00
Coty Sutherland
5067f18094 Resolves: rhbz-1121896 tomcat.service loads /etc/sysconfig/tomcat without shell expansion 2016-02-13 23:58:10 +03:00