pmeloni
f9258ed237
Resolves: RHEL-168577 Remove tomcat clustering JAR from RPM builds
...
Resolves: CVE-2026-29146
tomcat: Apache Tomcat: Information disclosure via Padding Oracle vulnerability in EncryptInterceptor
Resolves: CVE-2026-34486
tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass
Exclude i686 architecture from build
Co-authored-by: @eabdullin1
(cherry picked from commit d35685dd1b35c58b008e8f0164d1e59e91b5ffb4)
2026-06-18 19:06:50 +02:00
pmeloni
43abffff38
SOLVE RHEL-150719: Certificate revocation bypass due to improper OCSP response validation
2026-04-22 15:18:20 +02:00
Coty Sutherland
5cca2f2c58
Resolves: RHEL-150099 Rebase tomcat package to enable PQC features
2026-02-18 07:28:49 -05:00
Adam Krajcik
88a01c6209
Fix CVE-2025-31651, CVE-2025-55752 and CVE-2025-61795
...
Resolves: RHEL-124493 - tomcat: Directory traversal via rewrite with possible RCE
Resolves: RHEL-132560 - tomcat: Bypass of rules in Rewrite Valve
Resolves: RHEL-132525 - tomcat: Denial of service
2026-01-23 17:37:10 +01:00
Adam Krajcik
4c6f5230c7
Fix CVE-2025-48989 and CVE-2025-52520
...
Resolves: RHEL-102184 - tomcat: http/2 "MadeYouReset" DoS attack through HTTP/2 control frames
Resolves: RHEL-108906 - tomcat: Denial of service
2025-08-21 16:25:41 +02:00
Adam Krajcik
20cf6bbd1b
Fix multiple CVES
...
Resolves: RHEL-108900 - CVE-2025-48976
Resolves: RHEL-108902 - CVE-2025-48988
Resolves: RHEL-108904 - CVE-2025-49125
Resolves: RHEL-108908 - CVE-2025-53506
2025-08-21 14:54:10 +02:00
Adam Krajcik
483be6105f
Rebase to version 10.1.36
...
Resolves: RHEL-82927 - tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
Resolves: RHEL-87272 - tomcat: DoS in examples web application
Resolves: RHEL-87273 - tomcat: Authentication bypass when using Jakarta Authentication API
2025-04-14 23:45:59 +02:00
Adam Krajcik
985723a299
Resolves: RHEL-51222
2025-02-05 14:55:39 +01:00
Adam Krajcik
a24db6278f
Resolves: RHEL-46156 - tomcat: Improper Handling of Exceptional Conditions
2024-08-14 19:33:22 +02:00
Adam Krajcik
2ed1cb176a
Resolves: RHEL-50166 - Rebase tomcat to version 9.0.87
...
Resolves: RHEL-12274 - Use src.zip file as a Source0 instead of tar.gz
2024-08-14 19:33:22 +02:00
Hui Wang
a1fd99bcde
Update to 9.0.83
2023-12-01 17:41:19 +08:00
Hui Wang
703557e0a6
Update to 9.0.82
...
Resolves: rhbz#2244333 Wrong dbcp class in tomcat 9
2023-10-16 11:06:28 +08:00
Hui Wang
f1ec641a7b
Update to 9.0.80
2023-09-13 15:32:34 +08:00
Hui Wang
629d280689
Resolves: rhbz#2224318 There are duplicated jars in the tomcat lib-subpackage
...
Update to 9.0.78
2023-07-25 18:33:59 +08:00
Hui Wang
92faf5efdb
Update to 9.0.76
2023-06-14 09:46:01 +08:00
Hui Wang
f590c47ebf
Update to 9.0.75
2023-06-09 14:50:31 +08:00
Hui Wang
2145287741
Update to 9.0.73
2023-03-17 17:05:19 +08:00
Hui Wang
013888a3ae
Upload 9.0.72 source
2023-01-29 19:31:45 +08:00
Hui Wang
f166080781
Update tomcat to 9.0.70
2023-01-13 19:25:32 +08:00
Hui Wang
8e4906e924
Update tomcat to 9.0.68
2022-11-08 16:50:53 +08:00
Hui Wang
84177caec5
Update to 9.0.65
2022-07-22 17:33:41 +08:00
Hui Wang
57ef513427
Update for 9.0.64
2022-06-21 21:03:19 +08:00
Sonia Xu
37136861df
Update to 9.0.59
...
Fixes CVE-2022-23181
2022-03-03 02:09:56 +00:00
Hui Wang
da56117851
Update to 9.0.56
2021-12-09 18:15:03 +08:00
Hui Wang
1eeff668b5
Update to 9.0.55
2021-11-23 14:57:50 +08:00
Hui Wang
bb861ab8fa
Update to 9.0.54
2021-10-12 14:45:31 +08:00
Hui Wang
5bcc834dc3
Update to 9.0.53
2021-09-16 17:58:33 +08:00
Hui Wang
2c4c2c1d93
Update to 9.0.52
2021-08-18 15:52:49 +08:00
Hui Wang
fd93ca49bb
9.0.50 source
2021-07-07 14:22:35 +08:00
Hui Wang
b2675ecc09
Update to 9.0.45
2021-04-22 18:27:04 +08:00
Hui Wang
5eebe0ea54
Update to 9.0.44
2021-03-18 15:39:57 +08:00
Hui Wang
2f697945d5
Update to 9.0.43
2021-02-03 14:51:05 +08:00
Hui Wang
23db76574c
Update to 9.0.41
2020-12-09 14:53:37 +08:00
Hui Wang
0831527527
Update to 9.0.40
2020-11-18 15:01:59 +08:00
Hui Wang
20e12fb70e
Update to 9.0.39
2020-10-12 13:50:13 +08:00
Hui Wang
bddbd4330e
Update to 9.0.38
2020-09-16 17:41:36 +08:00
Coty Sutherland
52bdf0a6d0
Update to 9.0.37
2020-07-13 14:02:57 -04:00
Hui Wang
141fed8ee1
Upgrade to 9.0.36
2020-06-10 13:48:53 +08:00
Hui Wang
faf98ce047
Upgrade to 9.0.35
2020-05-31 21:10:41 +08:00
Coty Sutherland
eaac8d384c
Update to 9.0.34
2020-04-21 15:56:44 -04:00
Coty Sutherland
afaf8d3bf4
Update to 9.0.31
...
Resolves: rhbz#1806398 - CVE-2020-1938 tomcat: Apache Tomcat AJP File Read/Inclusion Vulnerability
2020-03-05 15:12:39 -05:00
Coty Sutherland
086e236b29
Update to 9.0.30
2019-12-20 07:54:07 -05:00
Coty Sutherland
dda1be6b79
Update to 9.0.26
2019-09-26 14:22:47 -04:00
Coty Sutherland
59a8d55f5a
Update to 9.0.21
2019-06-18 09:20:10 -04:00
Coty Sutherland
43c6ccdf49
Update to 9.0.13
2018-12-13 09:24:35 -05:00
Coty Sutherland
dd598eae60
Update to 9.0.10
2018-07-31 16:09:52 -04:00
Coty Sutherland
fb3fee7d60
Resolves: rhbz#1557507 Update to 9.0.7
2018-05-01 09:34:30 -04:00
Coty Sutherland
161c6b7f49
Adding sources for 8.5.29
2018-03-15 12:59:10 -04:00
Coty Sutherland
d28664612b
Update to 8.0.49
2018-02-01 08:48:31 -05:00
Coty Sutherland
f62ae76aa7
Update to 8.0.47
...
Resolves: rhbz#1497682 CVE-2017-12617 tomcat: Remote Code Execution bypass for CVE-2017-12615
2017-10-04 08:57:15 -04:00