Commit Graph

101 Commits

Author SHA1 Message Date
pmeloni
f9258ed237 Resolves: RHEL-168577 Remove tomcat clustering JAR from RPM builds
Resolves: CVE-2026-29146
tomcat: Apache Tomcat: Information disclosure via Padding Oracle vulnerability in EncryptInterceptor
Resolves: CVE-2026-34486
tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass
Exclude i686 architecture from build
Co-authored-by: @eabdullin1
(cherry picked from commit d35685dd1b35c58b008e8f0164d1e59e91b5ffb4)
2026-06-18 19:06:50 +02:00
pmeloni
43abffff38 SOLVE RHEL-150719: Certificate revocation bypass due to improper OCSP response validation 2026-04-22 15:18:20 +02:00
Coty Sutherland
5cca2f2c58 Resolves: RHEL-150099 Rebase tomcat package to enable PQC features 2026-02-18 07:28:49 -05:00
Adam Krajcik
88a01c6209 Fix CVE-2025-31651, CVE-2025-55752 and CVE-2025-61795
Resolves: RHEL-124493 - tomcat: Directory traversal via rewrite with possible RCE
Resolves: RHEL-132560 - tomcat: Bypass of rules in Rewrite Valve
Resolves: RHEL-132525 - tomcat: Denial of service
2026-01-23 17:37:10 +01:00
Adam Krajcik
4c6f5230c7 Fix CVE-2025-48989 and CVE-2025-52520
Resolves: RHEL-102184 - tomcat: http/2 "MadeYouReset" DoS attack through HTTP/2 control frames
Resolves: RHEL-108906 - tomcat: Denial of service
2025-08-21 16:25:41 +02:00
Adam Krajcik
20cf6bbd1b Fix multiple CVES
Resolves: RHEL-108900 - CVE-2025-48976
Resolves: RHEL-108902 - CVE-2025-48988
Resolves: RHEL-108904 - CVE-2025-49125
Resolves: RHEL-108908 - CVE-2025-53506
2025-08-21 14:54:10 +02:00
Adam Krajcik
483be6105f Rebase to version 10.1.36
Resolves: RHEL-82927 - tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
Resolves: RHEL-87272 - tomcat: DoS in examples web application
Resolves: RHEL-87273 - tomcat: Authentication bypass when using Jakarta Authentication API
2025-04-14 23:45:59 +02:00
Adam Krajcik
985723a299 Resolves: RHEL-51222 2025-02-05 14:55:39 +01:00
Adam Krajcik
a24db6278f Resolves: RHEL-46156 - tomcat: Improper Handling of Exceptional Conditions 2024-08-14 19:33:22 +02:00
Adam Krajcik
2ed1cb176a Resolves: RHEL-50166 - Rebase tomcat to version 9.0.87
Resolves: RHEL-12274 - Use src.zip file as a Source0 instead of tar.gz
2024-08-14 19:33:22 +02:00
Hui Wang
a1fd99bcde Update to 9.0.83 2023-12-01 17:41:19 +08:00
Hui Wang
703557e0a6 Update to 9.0.82
Resolves: rhbz#2244333 Wrong dbcp class in tomcat 9
2023-10-16 11:06:28 +08:00
Hui Wang
f1ec641a7b Update to 9.0.80 2023-09-13 15:32:34 +08:00
Hui Wang
629d280689 Resolves: rhbz#2224318 There are duplicated jars in the tomcat lib-subpackage
Update to 9.0.78
2023-07-25 18:33:59 +08:00
Hui Wang
92faf5efdb Update to 9.0.76 2023-06-14 09:46:01 +08:00
Hui Wang
f590c47ebf Update to 9.0.75 2023-06-09 14:50:31 +08:00
Hui Wang
2145287741 Update to 9.0.73 2023-03-17 17:05:19 +08:00
Hui Wang
013888a3ae Upload 9.0.72 source 2023-01-29 19:31:45 +08:00
Hui Wang
f166080781 Update tomcat to 9.0.70 2023-01-13 19:25:32 +08:00
Hui Wang
8e4906e924 Update tomcat to 9.0.68 2022-11-08 16:50:53 +08:00
Hui Wang
84177caec5 Update to 9.0.65 2022-07-22 17:33:41 +08:00
Hui Wang
57ef513427 Update for 9.0.64 2022-06-21 21:03:19 +08:00
Sonia Xu
37136861df Update to 9.0.59
Fixes CVE-2022-23181
2022-03-03 02:09:56 +00:00
Hui Wang
da56117851 Update to 9.0.56 2021-12-09 18:15:03 +08:00
Hui Wang
1eeff668b5 Update to 9.0.55 2021-11-23 14:57:50 +08:00
Hui Wang
bb861ab8fa Update to 9.0.54 2021-10-12 14:45:31 +08:00
Hui Wang
5bcc834dc3 Update to 9.0.53 2021-09-16 17:58:33 +08:00
Hui Wang
2c4c2c1d93 Update to 9.0.52 2021-08-18 15:52:49 +08:00
Hui Wang
fd93ca49bb 9.0.50 source 2021-07-07 14:22:35 +08:00
Hui Wang
b2675ecc09 Update to 9.0.45 2021-04-22 18:27:04 +08:00
Hui Wang
5eebe0ea54 Update to 9.0.44 2021-03-18 15:39:57 +08:00
Hui Wang
2f697945d5 Update to 9.0.43 2021-02-03 14:51:05 +08:00
Hui Wang
23db76574c Update to 9.0.41 2020-12-09 14:53:37 +08:00
Hui Wang
0831527527 Update to 9.0.40 2020-11-18 15:01:59 +08:00
Hui Wang
20e12fb70e Update to 9.0.39 2020-10-12 13:50:13 +08:00
Hui Wang
bddbd4330e Update to 9.0.38 2020-09-16 17:41:36 +08:00
Coty Sutherland
52bdf0a6d0 Update to 9.0.37 2020-07-13 14:02:57 -04:00
Hui Wang
141fed8ee1 Upgrade to 9.0.36 2020-06-10 13:48:53 +08:00
Hui Wang
faf98ce047 Upgrade to 9.0.35 2020-05-31 21:10:41 +08:00
Coty Sutherland
eaac8d384c Update to 9.0.34 2020-04-21 15:56:44 -04:00
Coty Sutherland
afaf8d3bf4 Update to 9.0.31
Resolves: rhbz#1806398 - CVE-2020-1938 tomcat: Apache Tomcat AJP File Read/Inclusion Vulnerability
2020-03-05 15:12:39 -05:00
Coty Sutherland
086e236b29 Update to 9.0.30 2019-12-20 07:54:07 -05:00
Coty Sutherland
dda1be6b79 Update to 9.0.26 2019-09-26 14:22:47 -04:00
Coty Sutherland
59a8d55f5a Update to 9.0.21 2019-06-18 09:20:10 -04:00
Coty Sutherland
43c6ccdf49 Update to 9.0.13 2018-12-13 09:24:35 -05:00
Coty Sutherland
dd598eae60 Update to 9.0.10 2018-07-31 16:09:52 -04:00
Coty Sutherland
fb3fee7d60 Resolves: rhbz#1557507 Update to 9.0.7 2018-05-01 09:34:30 -04:00
Coty Sutherland
161c6b7f49 Adding sources for 8.5.29 2018-03-15 12:59:10 -04:00
Coty Sutherland
d28664612b Update to 8.0.49 2018-02-01 08:48:31 -05:00
Coty Sutherland
f62ae76aa7 Update to 8.0.47
Resolves: rhbz#1497682 CVE-2017-12617 tomcat: Remote Code Execution bypass for CVE-2017-12615
2017-10-04 08:57:15 -04:00