From 9b523e3add40fbf57cad86a11093113af0d2c5f9 Mon Sep 17 00:00:00 2001 From: Sokratis Zappis Date: Tue, 7 May 2024 17:46:46 +0300 Subject: [PATCH] Resolves: RHEL-35812 - Rebase tomcat to version 9.0.87 Resolves: RHEL-29257 - tomcat: Apache Tomcat: WebSocket DoS with incomplete closing handshake Resolves: RHEL-29252 - tomcat: Apache Tomcat: HTTP/2 header handling DoS Resolves: RHEL-53001 - Amend tomcat's changelog so that fixed CVEs are mentioned explicitely Remove unneeded patch file --- .gitignore | 1 + fix-malformed-dtd.patch | 8 -------- sources | 2 +- tomcat-build.patch | 11 +++++------ tomcat.spec | 24 +++++++++++++++++++----- 5 files changed, 26 insertions(+), 20 deletions(-) delete mode 100644 fix-malformed-dtd.patch diff --git a/.gitignore b/.gitignore index fb61664..3f0456a 100644 --- a/.gitignore +++ b/.gitignore @@ -7,3 +7,4 @@ apache-tomcat-*-src/ /tomcat-9.0.62.redhat-00014-src.zip /tomcat-9.0.62.redhat-00017-src.zip /tomcat-9.0.62.redhat-00018-src.zip +/tomcat-9.0.87.redhat-00003-src.zip diff --git a/fix-malformed-dtd.patch b/fix-malformed-dtd.patch deleted file mode 100644 index f5f7546..0000000 --- a/fix-malformed-dtd.patch +++ /dev/null @@ -1,8 +0,0 @@ -diff -up ./java/org/apache/tomcat/util/modeler/mbeans-descriptors.dtd.orig ./java/org/apache/tomcat/util/modeler/mbeans-descriptors.dtd ---- ./java/org/apache/tomcat/util/modeler/mbeans-descriptors.dtd.orig 2023-02-07 14:11:25.294179017 -0500 -+++ ./java/org/apache/tomcat/util/modeler/mbeans-descriptors.dtd 2023-02-07 14:11:28.629196705 -0500 -@@ -1,4 +1,3 @@ -- -