Hello all,

We are currently running the tomcat5.5 package from Etch stable. We've been
advised by our hosting partner that the current version of Tomcat in this
package (5.5.20) has the following security vulnerability: "Apache Tomcat
Multiple Content Headers Information Disclosure".

Apparently this has been fixed in Tomcat 5.5.26.

I know that 5.5.26 is currently in the 'unstable' branch.

Is there any plans to release this as a security patch to Etch stable?

Regards,
Antony Kuzmicich


_______________________________________________
pkg-java-maintainers mailing list
[email protected]
http://lists.alioth.debian.org/mailman/listinfo/pkg-java-maintainers

Reply via email to