Commit Graph

62 Commits

Author SHA1 Message Date
Chris Kelley f688cab01d Update to JWS 5.6.1
Resolves: #2060910
2022-03-04 16:24:16 +00:00
Coty Sutherland f9d0cbb90c Resolves: rhbz#1977948 Drop jakarta-saaj dependency from pki-servlet-engine 2021-07-08 21:44:24 -04:00
Coty Sutherland ec341c0fb1 Resolves: rhbz#1721684 Rebase pki-servlet-engine to 9.0.30
Update Tomcat sources to JWS 5.3, and remove some JWS 5.3 features that PKI won't need
2020-04-23 10:23:57 -04:00
Coty Sutherland 00b9240636 Update to JWS 5.0.2 distribution 2019-04-04 18:17:27 -05:00
Coty Sutherland 9d6007e5f2 Update to JWS 5.0.1 distribution
Resolves: rhbz#1619232 - CVE-2018-8037 pki-servlet-container: tomcat: Due to a mishandling of close in NIO/NIO2 connectors user sessions can get mixed up
Resolves: rhbz#1641874 - CVE-2018-11784 pki-servlet-container: tomcat: Open redirect in default servlet
2019-04-04 18:15:31 -05:00
Coty Sutherland e14029400a Remove zip from sources repo and add to brew 2018-06-15 14:36:16 -04:00
Coty Sutherland dbf58e8939 Update sources 2018-06-15 14:36:16 -04:00
Coty Sutherland 8703348dd0 Update to 8.5.30 2018-05-01 09:50:53 -04:00
Coty Sutherland 7b1948b119 Adding sources for 8.5.29 2018-03-15 12:59:10 -04:00
Coty Sutherland d28664612b Update to 8.0.49 2018-02-01 08:48:31 -05:00
Coty Sutherland f62ae76aa7 Update to 8.0.47
Resolves: rhbz#1497682 CVE-2017-12617 tomcat: Remote Code Execution bypass for CVE-2017-12615
2017-10-04 08:57:15 -04:00
Coty Sutherland 623e2f2fe0 Resolves: rhbz#1480620 CVE-2017-7674 tomcat: Cache Poisoning 2017-08-21 10:36:47 -04:00
Coty Sutherland e1abf5cd6d Updated sources with rhpkg instead of fedpkg accidentally. Fixing that 2017-06-09 15:46:39 -04:00
Coty Sutherland 85038a7beb Resolves: rhbz#1459160 CVE-2017-5664 tomcat: Security constrained bypass in error page mechanism 2017-06-09 15:39:00 -04:00
Coty Sutherland ed0c45ddd8 Update to 8.0.43 2017-04-11 09:03:00 -04:00
Coty Sutherland 0f6fb39098 Update to 8.0.42 2017-03-31 09:28:51 -04:00
Coty Sutherland bcf38b1abe Resolves: rhbz#1403825 CVE-2016-8745 tomcat: information disclosure due to incorrect Processor sharing
Update to 8.0.41
2017-02-16 15:34:48 -05:00
Coty Sutherland 71d81d1e1e Resolves: rhbz#1397493 CVE-2016-6816 CVE-2016-6817 CVE-2016-8735 tomcat: various flaws
Update to 8.0.39
2016-11-29 17:28:09 -05:00
Coty Sutherland 387c0999f6 Update to 8.0.38 2016-10-25 11:04:12 -04:00
Coty Sutherland fe6d560133 Resolves: rhbz#1375581 CVE-2016-5388 CGI sets environmental variable based on user supplied Proxy request header 2016-09-13 13:03:04 -04:00
Coty Sutherland 50c91f3fe2 Resolves: rhbz#1349469 CVE-2016-3092 tomcat: Usage of vulnerable FileUpload package can result in denial of service (updates to 8.0.36) 2016-08-08 15:31:26 -04:00
Ivan Afonichev 7977e008b9 Updated to 8.0.32
- Remove log4j support. It has never been working actually. See rhbz#1236297
2016-02-14 01:08:21 +03:00
Alexander Kurtakov 872c469097 Update to 8.0.26. 2015-08-27 10:57:42 +03:00
Alexander Kurtakov 3a20f845cd Update to 8.0.24. 2015-07-10 11:07:03 +03:00
Alexander Kurtakov b2dda77052 Update to 8.0.23. 2015-06-18 15:28:42 +03:00
Alexander Kurtakov c2e91f9ffc Update to tomcat 8.0.20. 2015-03-06 12:01:37 +02:00
Ivan Afonichev 1001f00e0d Updated to 8.0.18 2015-02-16 00:43:27 +03:00
Alexander Kurtakov b5a9b72e6c Update to upstream 7.0.54 - fixes compile with Java 8. 2014-06-05 11:29:46 +03:00
Ivan Afonichev cee7beed0a Updated to 7.0.52
- Rewrite jsvc implementation, resolves: rhbz#1051743
- Switch to java-headless R, resolves: rhbz#1068566
- Create and own %{_localstatedir}/lib/tomcats, resolves: rhbz#1026741
- Add pom for tomcat-jdbc, resolves: rhbz#1011003
2014-03-26 03:34:21 +04:00
Ivan Afonichev 2e1950e71c Updated to 7.0.47
Fix java.security.policy
2013-11-04 00:04:06 +04:00
Ivan Afonichev 1ff9d5ff80 Remove jpackage-utils R 2013-07-12 00:44:06 +04:00
squallsama 4bc1f14d04 update to 7.0.42 2013-07-11 12:31:04 +03:00
Ivan Afonichev 6df24b614d Updated to 7.0.40
Resolves: rhbz 956569 added missing commons-pool link

Conflicts:
	sources
	tomcat.spec
2013-05-11 19:28:01 +04:00
Ivan Afonichev 9c1682a1b2 Updated to 7.0.39 2013-03-29 00:57:39 +04:00
Ivan Afonichev c9c2c4a8ba Updated to 7.0.37 2013-02-20 01:28:28 +04:00
Ivan Afonichev b2b5f77833 Updated to 7.0.35
systemd SuccessExitStatus=143 for proper stop exit code processing
2013-02-04 02:29:10 +04:00
Ivan Afonichev a91e144155 Updated to 7.0.34
- ecj >= 4.2.1 now required
- Resolves: rhbz 889395 concat classpath correctly; chdir to $CATALINA_HOME
2012-12-24 02:24:16 +04:00
Ivan Afonichev 7b951af810 Updated to 7.0.33
- Resolves: rhbz 873620 need chkconfig for update-alternatives
2012-12-02 02:20:24 +04:00
Ivan Afonichev ad8bfffe2f - Updated to 7.0.32
- Resolves: rhbz 842620 symlinks to taglibs
2012-10-17 02:28:32 +04:00
Ivan Afonichev 5955ecc8dd Updated to 7.0.29 2012-07-26 00:43:31 +04:00
Ivan Afonichev c29844a941 Updated to 7.0.28
Resolves: rhbz 820119 Remove bundled apache-commons-dbcp
Resolves: rhbz 814900 Added tomcat-coyote POM
Resolves: rhbz 810775 Remove systemv stuff from %post scriptlet
Remove redhat-lsb R
2012-07-02 02:42:34 +04:00
Ivan Afonichev 4133172860 - Updated to 7.0.27
- Fixed jakarta-taglibs-standard BR and R
2012-04-08 00:39:19 +04:00
Ivan Afonichev 5d4b042f0c Updated to 7.0.26
Bug 790334: Change ownership of logdir for logrotate
2012-02-22 21:16:21 +04:00
Ivan Afonichev a7d085a852 - Updated to 7.0.25
- Removed EntityResolver patch (changes already in upstream sources)
- Place poms and depmaps in the same package as jars
- Added javax.servlet.descriptor to export-package of servlet-api
- Move several chkconfig actions and reqs to systemv subpackage
- New maven depmaps generation method
- Add patch to support java7. (patch sent upstream).
- Require java >= 1:1.6.0
2012-01-22 01:52:19 +04:00
Ivan Afonichev 4cfe7cc5cd Updated to 7.0.23 2011-11-28 21:30:16 +04:00
Ivan Afonichev 7998554215 Updated to 7.0.22 2011-10-06 01:06:06 +04:00
Ivan Afonichev 5e7f3dea1b Updated to 7.0.21 2011-09-08 00:14:46 +04:00
Ivan Afonichev f0cf232913 Updated to 7.0.20 2011-08-15 21:27:41 +04:00
Ivan Afonichev d07c057684 Updated to 7.0.19 2011-07-26 21:54:26 +04:00
Ivan Afonichev bdc086f385 Updated to 7.0.16 2011-06-21 01:15:48 +04:00