dev
Thread
Date
Earlier messages
Later messages
Messages by Thread
(tomcat) branch main updated: Avoid OpenSSL X509_STORE_CTX_get0_current_issuer function
remm
(tomcat) branch 9.0.x updated: Add back OpenSSL 1.1.1 compatibility
remm
(tomcat) branch 10.1.x updated: Add back OpenSSL 1.1.1 compatibility
remm
(tomcat) branch 10.1.x updated: Fix BZ 69845 - Inflater/Deflater throw ISE rather than NPE from Java 25
markt
(tomcat) branch 11.0.x updated (4baad529fd -> 61f76458d9)
dsoumis
(tomcat) 01/07: If optionalNoCA is configured then OCSP should be disabled.
dsoumis
(tomcat) 03/07: If we set ok=0 with errnum==X509_V_OK (0), OpenSSL emits a fatal internal_error. Tolerate V_OCSP_CERTSTATUS_UNKNOWN and let the client policy (e.g. NO_FALLBACK) decide.
dsoumis
(tomcat) 02/07: CAs may not issue CRLs.
dsoumis
(tomcat) 04/07: If the OCSP response is null, the error is set as X509_V_ERR_APPLICATION_VERIFICATION (50). Should not pass our verification process.
dsoumis
(tomcat) 05/07: Set specific error when V_OCSP_CERTSTATUS_REVOKED
dsoumis
(tomcat) 07/07: Refactor multiple instances of same code block in TestOcspIntegration
dsoumis
(tomcat) 06/07: Ehnance tests and fix various issues in TestOcspIntegration tests
dsoumis
(tomcat) branch main updated: Add GPG signature verification to verify-release
schultz
[ANN] Apache Tomcat 11.0.13 Available
Mark Thomas
(tomcat) branch 11.0.x updated: Keep directory and directoryFile in sync
markt
(tomcat) branch 9.0.x updated: Keep directory and directoryFile in sync
markt
(tomcat) branch 10.1.x updated: Keep directory and directoryFile in sync
markt
(tomcat) branch main updated: Keep directory and directoryFile in sync
markt
svn commit: r80019 - dev/tomcat/tomcat-11/v11.0.13 release/tomcat/tomcat-11/v11.0.13
markt
(tomcat) branch 11.0.x updated: Re-order checks to avoid NPE. Identified by Coverity Scan.
markt
(tomcat) branch main updated: Re-order checks to avoid NPE. Identified by Coverity Scan.
markt
(tomcat) branch main updated: Use constant
remm
[ANN] Apache Tomcat 10.1.48 Available
Christopher Schultz
svn commit: r1929136 - in tomcat/site/trunk: . docs docs/tomcat-10.1-doc docs/tomcat-10.1-doc/annotationapi docs/tomcat-10.1-doc/annotationapi/jakarta/annotation docs/tomcat-10.1-doc/annotationapi/jakarta/annotation/security docs/tomcat-10.1-doc/annota...
schultz
svn commit: r80032 - dev/tomcat/tomcat-10/v10.1.48 release/tomcat/tomcat-10/v10.1.48
schultz
(tomcat) branch 9.0.x updated: Add a unit test for CVE-2017-15698
dsoumis
(tomcat) branch 10.1.x updated: Add a unit test for CVE-2017-15698
dsoumis
[VOTE] Release Apache Tomcat 11.0.13
Mark Thomas
Re: [VOTE] Release Apache Tomcat 11.0.13
Christopher Schultz
Re: [VOTE] Release Apache Tomcat 11.0.13
Igal Sapir
Re: [VOTE] Release Apache Tomcat 11.0.13
Rémy Maucherat
[VOTE][RESULT] Release Apache Tomcat 11.0.13
Mark Thomas
Re: [VOTE] Release Apache Tomcat 11.0.13
Mark Thomas
Re: [VOTE] Release Apache Tomcat 11.0.13
Rainer Jung
(tomcat) branch main updated: Add a unit test for CVE-2017-15698
dsoumis
[PR] Add a unit test for CVE-2017-15698 [tomcat]
via GitHub
Re: [PR] Add a unit test for CVE-2017-15698 [tomcat]
via GitHub
svn commit: r1929134 - in tomcat/site/trunk: docs xdocs
remm
[ANN] Apache Tomcat 9.0.111 available
Rémy Maucherat
svn commit: r1929133 - in tomcat/site/trunk/docs/tomcat-9.0-doc: . META-INF annotationapi annotationapi/javax/annotation annotationapi/javax/annotation/security annotationapi/javax/annotation/sql api api/org/apache/catalina api/org/apache/catalina/ant ...
remm
[VOTE][RE-VOTEx2] Release Apache Tomcat 10.1.48
Christopher Schultz
Re: [VOTE][RE-VOTEx2] Release Apache Tomcat 10.1.48
Christopher Schultz
Re: [VOTE][RE-VOTEx2] Release Apache Tomcat 10.1.48
Rémy Maucherat
Re: [VOTE][RE-VOTEx2] Release Apache Tomcat 10.1.48
Rainer Jung
[VOTE][RESULT] Release Apache Tomcat 10.1.48
Christopher Schultz
Re: [VOTE][RE-VOTEx2] Release Apache Tomcat 10.1.48
Igal Sapir
(tomcat) branch 9.0.x updated: Test OCSP with BoringSSL and LibreSSL
remm
[VOTE][RE-VOTE] Release Apache Tomcat 10.1.48
Christopher Schultz
Re: [VOTE][RE-VOTE] Release Apache Tomcat 10.1.48
Christopher Schultz
svn commit: r1929120 - in tomcat/site/trunk: docs xdocs
markt
svn commit: r1929118 - in tomcat/site/trunk/docs/tomcat-11.0-doc: . annotationapi annotationapi/jakarta/annotation annotationapi/jakarta/annotation/security annotationapi/jakarta/annotation/sql api api/org/apache/catalina api/org/apache/catalina/ant ap...
markt
(tomcat) branch 9.0.x updated: Update the internal fork of Apache Commons BCEL to 6.11.0.
markt
(tomcat) branch 10.1.x updated: Update the internal fork of Apache Commons BCEL to 6.11.0.
markt
(tomcat) branch main updated: Update the internal fork of Apache Commons BCEL to 6.11.0.
markt
(tomcat-jakartaee-migration) branch dependabot/maven/org.jacoco-jacoco-maven-plugin-0.8.14 created (now feba66b)
github-bot
(tomcat) tag 11.0.13 created (now 51fd0788b4)
markt
(tomcat) 01/01: Tag 11.0.13
markt
(tomcat) branch 10.1.x updated: Add GPG signature verification to verify-release
schultz
(tomcat-jakartaee-migration) branch main updated: Bump org.jacoco:jacoco-maven-plugin from 0.8.13 to 0.8.14
remm
(tomcat-jakartaee-migration) branch dependabot/maven/org.apache.bcel-bcel-6.11.0 deleted (was f03e693)
github-bot
(tomcat-jakartaee-migration) branch dependabot/maven/org.jacoco-jacoco-maven-plugin-0.8.14 deleted (was feba66b)
github-bot
(tomcat-jakartaee-migration) branch main updated: Bump org.apache.bcel:bcel from 6.10.0 to 6.11.0
remm
(tomcat-jakartaee-migration) branch dependabot/maven/org.apache.bcel-bcel-6.11.0 created (now f03e693)
github-bot
[PR] Bump org.apache.bcel:bcel from 6.10.0 to 6.11.0 [tomcat-jakartaee-migration]
via GitHub
Re: [PR] Bump org.apache.bcel:bcel from 6.10.0 to 6.11.0 [tomcat-jakartaee-migration]
via GitHub
[PR] Bump org.jacoco:jacoco-maven-plugin from 0.8.13 to 0.8.14 [tomcat-jakartaee-migration]
via GitHub
Re: [PR] Bump org.jacoco:jacoco-maven-plugin from 0.8.13 to 0.8.14 [tomcat-jakartaee-migration]
via GitHub
(tomcat-native) branch main updated: Correctly handle optionalNoCA verification
dsoumis
(tomcat) branch main updated: Disable Tomcat Native tests until release is available with the fix
markt
(tomcat) branch 10.1.x updated: Fix release date for 10.1.47
schultz
(tomcat) branch 10.1.x updated: Increment version numbers for the next release.
schultz
(tomcat) branch 11.0.x updated: Add GPG signature verification to verify-release
schultz
(tomcat) branch 9.0.x updated: Make what we are expecting as errnum more obvious
dsoumis
(tomcat) branch 10.1.x updated: Disable Tomcat Native tests until release is available with the fix
markt
svn commit: r79975 - in dev/tomcat/tomcat-10/v10.1.48: bin bin/embed src
schultz
svn commit: r79974 - in dev/tomcat/tomcat-10/v10.1.48: bin bin/embed src
schultz
(tomcat) branch 10.1.x updated: Fix BZ 69848 - Correct copy/paste error when refactoring method names
markt
(tomcat) branch 10.1.x updated: Fix source distro line endings for new test script
markt
(tomcat) branch 9.0.x updated: Add missing entries to list of output files
markt
(tomcat) branch 10.1.x updated: Add missing entries to list of output files
markt
(tomcat) branch 9.0.x updated: Treat new test password files as text files for line-endings
markt
(tomcat) branch main updated: Fix source distro line endings for new test script
markt
svn commit: r1929064 - in tomcat/site/trunk: docs xdocs
schultz
(tomcat) branch main updated: Add missing entries to list of output files
markt
(tomcat) tag 10.1.48 created (now 4bb27b9159)
schultz
(tomcat) 01/01: Tag 10.1.48
schultz
svn commit: r79962 - in dev/tomcat/tomcat-11/v11.0.13: . bin bin/embed src
markt
(tomcat) branch 10.1.x updated: Test OCSP with BoringSSL and LibreSSL
remm
(tomcat) branch main updated: Test OCSP with BoringSSL and LibreSSL
remm
(tomcat) branch 10.1.x updated: Fix race condition.
markt
(tomcat) branch 11.0.x updated: Fix race condition.
markt
(tomcat) branch 9.0.x updated: Formatting
remm
(tomcat) branch main updated: Formatting
remm
(tomcat) branch 11.0.x updated: Disable Tomcat Native tests until release is available with the fix
markt
(tomcat) branch 10.1.x updated: Align with the other TLS tests
remm
(tomcat) branch 10.1.x updated: Make what we are expecting as errnum more obvious
dsoumis
(tomcat) branch 11.0.x updated: Make what we are expecting as errnum more obvious
dsoumis
(tomcat) branch main updated: Make what we are expecting as errnum more obvious
dsoumis
(tomcat) branch 9.0.x updated: One further method refactoring error
markt
(tomcat) branch 10.1.x updated: One further method refactoring error
markt
(tomcat) branch 11.0.x updated: One further method refactoring error
markt
(tomcat) branch main updated: One further method refactoring error
markt
(tomcat) branch main updated: Fix BZ 69848 - Correct copy/paste error when refactoring method names
markt
(tomcat-native) branch main updated: Correct reference Tomcat version for JNI source
dsoumis
(tomcat) branch 10.1.x updated: Fix BZ 69837 - corrupted class path from Loader on Windows
markt
(tomcat) branch main updated (7b81210bfe -> 60210a9e6c)
dsoumis
(tomcat) 04/07: If the OCSP response is null, the error is set as X509_V_ERR_APPLICATION_VERIFICATION (50). Should not pass our verification process.
dsoumis
(tomcat) 07/07: Refactor multiple instances of same code block in TestOcspIntegration
dsoumis
(tomcat) 06/07: Ehnance tests and fix various issues in TestOcspIntegration tests
dsoumis
(tomcat) 05/07: Set specific error when V_OCSP_CERTSTATUS_REVOKED
dsoumis
(tomcat) 02/07: CAs may not issue CRLs.
dsoumis
(tomcat) 03/07: If we set ok=0 with errnum==X509_V_OK (0), OpenSSL emits a fatal internal_error. Tolerate V_OCSP_CERTSTATUS_UNKNOWN and let the client policy (e.g. NO_FALLBACK) decide.
dsoumis
(tomcat) 01/07: If optionalNoCA is configured then OCSP should be disabled.
dsoumis
(tomcat-native) branch 1.3.x updated: Correctly handle optionalNoCA verification
dsoumis
(tomcat) branch 9.0.x updated: Fix BZ 69839 - Ensure session ID changes are promulgated to SSO Valve
markt
(tomcat) branch main updated: Fix BZ 69839 - Ensure session ID changes are promulgated to SSO Valve
markt
(tomcat) branch 11.0.x updated: Relax file name check since input can include paths
markt
(tomcat) branch main updated: Relax file name check since input can include paths
markt
(tomcat) branch main updated: Reject requests that map to invalid Windows file names earlier.
markt
Re: (tomcat) branch main updated: Reject requests that map to invalid Windows file names earlier.
Mark Thomas
(tomcat) branch 9.0.x updated: Fix BZ 69837 - corrupted class path from Loader on Windows
markt
(tomcat) branch 11.0.x updated: Fix BZ 69837 - corrupted class path from Loader on Windows
markt
(tomcat) branch main updated: Fix BZ 69837 - corrupted class path from Loader on Windows
markt
(tomcat) branch main updated: Disable test committed in error with unrelated fix.
markt
(tomcat) branch 10.1.x updated: Fix BZ 69844 - server sending masked frames is a protocol error
markt
(tomcat) branch 11.0.x updated: Disable test committed in error with unrelated fix.
markt
(tomcat) branch 11.0.x updated: Fix BZ 69845 - Inflater/Deflater throw ISE rather than NPE from Java 25
markt
(tomcat) branch main updated: Fix BZ 68947 - remove remaining references to removed package
markt
[Bug 69847] New: Obsolete module export org.apache.tomcat.util.codec.binary in Tomcat 11 distributions
bugzilla
[Bug 69847] Obsolete module export org.apache.tomcat.util.codec.binary in Tomcat 11 distributions
bugzilla
[Bug 69846] New: PersistentManager does not reliably persist sessions during graceful shutdown in distributed environments (e.g., Kubernetes)
bugzilla
[Bug 69846] PersistentManager does not reliably persist sessions during graceful shutdown in distributed environments (e.g., Kubernetes)
bugzilla
[ANN] Apache Tomcat 10.1.47 Available
Christopher Schultz
(tomcat) branch 9.0.x updated: Deprecate RemoteAddr[Filter|Valve] in favour of RemoteCIDR[Filter|Valve]
markt
(tomcat) branch 10.1.x updated: Deprecate RemoteAddr[Filter|Valve] in favour of RemoteCIDR[Filter|Valve]
markt
[Bug 69845] New: java.lang.IllegalStateException: Inflater has been closed
bugzilla
[Bug 69845] java.lang.IllegalStateException: Inflater has been closed
bugzilla
[Bug 69845] java.lang.IllegalStateException: Inflater has been closed
bugzilla
[Bug 69845] java.lang.IllegalStateException: Inflater has been closed
bugzilla
[Bug 69845] java.lang.IllegalStateException: Inflater has been closed
bugzilla
[Bug 69845] java.lang.IllegalStateException: Inflater has been closed
bugzilla
[Bug 69845] java.lang.IllegalStateException: Inflater has been closed
bugzilla
[Bug 69845] java.lang.IllegalStateException: Inflater has been closed
bugzilla
(tomcat) branch main updated: Incorrect processing of partitioned setting
remm
(tomcat) branch 11.0.x updated: Remove unnecessary @SuppressWarnings
markt
(tomcat) branch main updated: Retrieve correct principal
markt
Proposal for additional ant test targets
Coty Sutherland
Re: Proposal for additional ant test targets
Dimitris Soumis
Re: Proposal for additional ant test targets
Rémy Maucherat
Re: Proposal for additional ant test targets
Igal Sapir
Re: Proposal for additional ant test targets
Mark Thomas
Re: Proposal for additional ant test targets
Coty Sutherland
(tomcat) branch 10.1.x updated: Add release date
schultz
(tomcat) branch 11.0.x updated: Add release date for 11.0.12
markt
(tomcat) branch 11.0.x updated: Modify fix for BZ69836
remm
svn commit: r79851 - in release/tomcat: tomcat-11/v11.0.10 tomcat-11/v11.0.11 tomcat-9/v9.0.109
markt
svn commit: r1929003 - in tomcat/site/trunk: . docs docs/tomcat-11.0-doc docs/tomcat-11.0-doc/annotationapi docs/tomcat-11.0-doc/annotationapi/jakarta/annotation docs/tomcat-11.0-doc/annotationapi/jakarta/annotation/security docs/tomcat-11.0-doc/annota...
markt
(tomcat) branch 9.0.x updated: Remove unnecessary @SuppressWarnings
markt
[Bug 69842] New: Critical: DefaultServlet doPut allows uploading executable JSP(X) to webroot when readonly=false — PUT → RCE (Patch-bypass risk on case-insensitive FS)
bugzilla
[Bug 69842] Critical: DefaultServlet doPut allows uploading executable JSP(X) to webroot when readonly=false — PUT → RCE (Patch-bypass risk on case-insensitive FS)
bugzilla
(tomcat) branch 9.0.x updated: Revert
remm
(tomcat) branch 11.0.x updated: Incorrect processing of partitioned setting
remm
(tomcat) branch 9.0.x updated: Add test
remm
svn commit: r79849 - in release/tomcat/tomcat-10: v10.1.45 v10.1.46
schultz
svn commit: r79848 - dev/tomcat/tomcat-10/v10.1.47 release/tomcat/tomcat-10/v10.1.47
schultz
(tomcat) branch 10.1.x updated: Retrieve correct principal
markt
(tomcat) branch 11.0.x updated: Retrieve correct principal
markt
[Bug 69844] New: WebSocket client does not validate that data sent from the server is unmasked
bugzilla
[Bug 69844] WebSocket client does not validate that data sent from the server is unmasked
bugzilla
svn commit: r1928978 - in tomcat/site/trunk: . docs xdocs
remm
(tomcat) branch 9.0.x updated: Fix OCSP responses validity by extending them to 365 days in generate-ocsp-test-artifacts.sh for use in TestOcspIntegration tests
dsoumis
(tomcat) branch 10.1.x updated: Fix OCSP responses validity by extending them to 365 days in generate-ocsp-test-artifacts.sh for use in TestOcspIntegration tests
dsoumis
(tomcat) branch main updated: Fix OCSP responses validity by extending them to 365 days in generate-ocsp-test-artifacts.sh for use in TestOcspIntegration tests
dsoumis
svn commit: r1928979 - in tomcat/site/trunk/docs/tomcat-9.0-doc: . annotationapi annotationapi/javax/annotation annotationapi/javax/annotation/security annotationapi/javax/annotation/sql annotationapi/legal annotationapi/resource-files annotationapi/sc...
remm
svn commit: r1928980 - in tomcat/site/trunk/docs/tomcat-9.0-doc: annotationapi/resource-files api/org/apache/tomcat/util/compat api/org/apache/tomcat/util/http api/org/apache/tomcat/util/net/openssl/ciphers api/resource-files elapi/resource-files jaspi...
remm
svn commit: r79830 - dev/tomcat/tomcat-9/v9.0.110 release/tomcat/tomcat-9/v9.0.110
remm
(tomcat) branch 10.1.x updated: Check SSO configuration on start
remm
(tomcat) branch 9.0.x updated: Check SSO configuration on start
remm
(tomcat) branch 11.0.x updated: Check SSO configuration on start
remm
(tomcat) branch main updated: Check SSO configuration on start
remm
[Bug 69839] New: Changing SessionId creates eternal Single Sign On sessions
bugzilla
[Bug 69839] Changing SessionId creates eternal Single Sign On sessions
bugzilla
[Bug 69839] Changing SessionId creates eternal Single Sign On sessions
bugzilla
[Bug 69839] Changing SessionId creates eternal Single Sign On sessions
bugzilla
[Bug 69839] Changing SessionId creates eternal Single Sign On sessions
bugzilla
[Bug 69839] Changing SessionId creates eternal Single Sign On sessions
bugzilla
[Bug 69839] Changing SessionId creates eternal Single Sign On sessions
bugzilla
[Bug 69839] Changing SessionId creates eternal Single Sign On sessions
bugzilla
[Bug 69839] Changing SessionId creates eternal Single Sign On sessions
bugzilla
[Bug 69839] Changing SessionId creates eternal Single Sign On sessions
bugzilla
[Bug 69839] Changing SessionId creates eternal Single Sign On sessions
bugzilla
(tomcat) branch 11.0.x updated: Fix url reference
dsoumis
(tomcat) branch main updated: Fix url reference
dsoumis
(tomcat) branch 9.0.x updated: Fix url reference
dsoumis
(tomcat) branch 10.1.x updated: Fix url reference
dsoumis
[Bug 69837] New: JavaCompiler invalid compile classpath composing
bugzilla
[Bug 69837] JavaCompiler invalid compile classpath composing
bugzilla
[Bug 69837] JavaCompiler invalid compile classpath composing
bugzilla
[Bug 69837] JavaCompiler invalid compile classpath composing
bugzilla
[Bug 69837] JavaCompiler invalid compile classpath composing
bugzilla
Earlier messages
Later messages