Attach filesAttach ScreenshotVotersWatch issueWatchersLinkCloneUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete Comments
    XMLWordPrintableJSON

    Details

    • Type: Sub-task
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: Trunk
    • Fix Version/s: Trunk
    • Component/s: framework
    • Labels:
      None
    • Sprint:
      Bug Crush Event - 21/2/2015

      Description

      3 security issues have been released today for Tomcat, asking to migrate to the latest version :

      CVE-2009-2902: Apache Tomcat unexpected file deletion in work directory
      CVE-2009-2901: Apache Tomcat insecure partial deploy after failed undeploy
      CVE-2009-3548: Apache Tomcat unexpected file deletion and/or alteration

        Attachments

        1. ASF.LICENSE.NOT.GRANTED--OFBIZ-3424.diff
          5 kB
          Erwan de Ferrieres
        2. tomcat-6.0.24-jasper.jar
          510 kB
          Erwan de Ferrieres
        3. tomcat-6.0.24-jasper-el.jar
          105 kB
          Erwan de Ferrieres
        4. tomcat-6.0.24-jasper-jdt.jar
          1.34 MB
          Erwan de Ferrieres
        5. tomcat-6.0.24-tomcat-coyote.jar
          740 kB
          Erwan de Ferrieres
        6. tomcat-6.0.24-tomcat-dbcp.jar
          227 kB
          Erwan de Ferrieres
        7. tomcat-6.0.24-tomcat-juli.jar
          25 kB
          Erwan de Ferrieres
        8. tomcat-6.0.24-catalina-tribes.jar
          229 kB
          Erwan de Ferrieres
        9. tomcat-6.0.24-catalina-ha.jar
          125 kB
          Erwan de Ferrieres
        10. tomcat-6.0.24-catalina.jar
          1.13 MB
          Erwan de Ferrieres
        11. tomcat-6.0.24-servlet-api.jar
          86 kB
          Erwan de Ferrieres
        12. tomcat-6.0.24-jsp-api.jar
          75 kB
          Erwan de Ferrieres
        13. tomcat-6.0.24-el-api.jar
          31 kB
          Erwan de Ferrieres
        14. tomcat-6.0.24-annotations-api.jar
          15 kB
          Erwan de Ferrieres
        15. OFBIZ-3424.diff
          14 kB
          Erwan de Ferrieres

          Activity

            People

            • Assignee:
              erwan Erwan de Ferrieres
              Reporter:
              erwan Erwan de Ferrieres

              Dates

              • Created:
                Updated:
                Resolved:

                Agile

                  Issue deployment