Bug report for Tomcat 4 [2009/06/07]

2009-06-08 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

Bug report for Tomcat 5 [2009/06/07]

2009-06-08 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

svn commit: r782559 - in /tomcat/site/trunk: docs/security-4.html docs/security-5.html docs/security-6.html xdocs/security-4.xml xdocs/security-5.xml xdocs/security-6.xml

2009-06-08 Thread markt
Author: markt Date: Mon Jun 8 08:39:25 2009 New Revision: 782559 URL: http://svn.apache.org/viewvc?rev=782559view=rev Log: Update CVE-2009-0580 Modified: tomcat/site/trunk/docs/security-4.html tomcat/site/trunk/docs/security-5.html tomcat/site/trunk/docs/security-6.html

DO NOT REPLY [Bug 47331] New: No translation error messag when using #{...} in template text

2009-06-08 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=47331 Summary: No translation error messag when using #{...} in template text Product: Tomcat 6 Version: 6.0.20 Platform: PC OS/Version: Linux Status: NEW

svn commit: r782586 - in /tomcat/site/trunk: docs/security-6.html xdocs/security-6.xml

2009-06-08 Thread markt
Author: markt Date: Mon Jun 8 10:18:35 2009 New Revision: 782586 URL: http://svn.apache.org/viewvc?rev=782586view=rev Log: Fix bad edit Modified: tomcat/site/trunk/docs/security-6.html tomcat/site/trunk/xdocs/security-6.xml Modified: tomcat/site/trunk/docs/security-6.html URL:

svn commit: r782599 - /tomcat/tc6.0.x/trunk/webapps/docs/changelog.xml

2009-06-08 Thread markt
Author: markt Date: Mon Jun 8 12:12:05 2009 New Revision: 782599 URL: http://svn.apache.org/viewvc?rev=782599view=rev Log: Fix a couple of typos Modified: tomcat/tc6.0.x/trunk/webapps/docs/changelog.xml Modified: tomcat/tc6.0.x/trunk/webapps/docs/changelog.xml URL:

svn commit: r782612 - /tomcat/tc6.0.x/trunk/STATUS.txt

2009-06-08 Thread funkman
Author: funkman Date: Mon Jun 8 13:09:47 2009 New Revision: 782612 URL: http://svn.apache.org/viewvc?rev=782612view=rev Log: vote Modified: tomcat/tc6.0.x/trunk/STATUS.txt Modified: tomcat/tc6.0.x/trunk/STATUS.txt URL:

DO NOT REPLY [Bug 46381] Coerce EL expression to java.lang.Object breaks expression concatenation

2009-06-08 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=46381 Alfred Staflinger alfred.staflin...@infoniqa.com changed: What|Removed |Added Status|RESOLVED

found very old feature request ...

2009-06-08 Thread Guenter Knauf
All, while I was just looking at BZ I found a very old feature request for NetWare: https://issues.apache.org/bugzilla/show_bug.cgi?id=8441 what do you think? These 3 files are those we use for start/stop of TC ...; maybe we can add these files to TC 4/5, or are there any objections? then another

svn commit: r782751 - /tomcat/trunk/modules/jdbc-pool/sign.sh

2009-06-08 Thread fhanik
Author: fhanik Date: Mon Jun 8 19:53:39 2009 New Revision: 782751 URL: http://svn.apache.org/viewvc?rev=782751view=rev Log: Create for bash Modified: tomcat/trunk/modules/jdbc-pool/sign.sh Modified: tomcat/trunk/modules/jdbc-pool/sign.sh URL:

svn propchange: r734734 - svn:log

2009-06-08 Thread markt
Author: markt Revision: 734734 Modified property: svn:log Modified: svn:log at Mon Jun 8 19:59:39 2009 -- --- svn:log (original) +++ svn:log Mon Jun 8 19:59:39 2009 @@ -1,3 +1,4 @@ -Remove 3 of the essentially 4

svn commit: r782757 - in /tomcat/container/tc5.5.x/catalina/src/share/org/apache: catalina/connector/ catalina/core/ catalina/servlets/ catalina/ssi/ catalina/util/ naming/resources/

2009-06-08 Thread markt
Author: markt Date: Mon Jun 8 20:04:29 2009 New Revision: 782757 URL: http://svn.apache.org/viewvc?rev=782757view=rev Log: Port normalisation clean-up. Includes fix for CVE-2008-5515 Modified: tomcat/container/tc5.5.x/catalina/src/share/org/apache/catalina/connector/Request.java

svn commit: r782762 - /tomcat/tags/JDBC_POOL_1_0_3/

2009-06-08 Thread fhanik
Author: fhanik Date: Mon Jun 8 20:14:28 2009 New Revision: 782762 URL: http://svn.apache.org/viewvc?rev=782762view=rev Log: A tag that we can vote on, I dropped the ball on the previous one Added: tomcat/tags/JDBC_POOL_1_0_3/ (props changed) - copied from r782760,

svn commit: r782764 - in /tomcat/site/trunk: docs/security-4.html docs/security-5.html docs/security-6.html xdocs/security-4.xml xdocs/security-5.xml xdocs/security-6.xml

2009-06-08 Thread markt
Author: markt Date: Mon Jun 8 20:18:40 2009 New Revision: 782764 URL: http://svn.apache.org/viewvc?rev=782764view=rev Log: Add CVE-2008-5515. Modified: tomcat/site/trunk/docs/security-4.html tomcat/site/trunk/docs/security-5.html tomcat/site/trunk/docs/security-6.html

svn commit: r782770 - /tomcat/trunk/java/org/apache/catalina/ssi/SSIServletRequestUtil.java

2009-06-08 Thread markt
Author: markt Date: Mon Jun 8 20:25:34 2009 New Revision: 782770 URL: http://svn.apache.org/viewvc?rev=782770view=rev Log: Remove a deprecated method Modified: tomcat/trunk/java/org/apache/catalina/ssi/SSIServletRequestUtil.java Modified:

DO NOT REPLY [Bug 42536] The procedure entry point getaddrinfo could not be located in WS2_32.dll

2009-06-08 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=42536 --- Comment #3 from Petr host...@post.cz 2009-06-08 13:47:08 PST --- The same occurs now with tcnative-1.dll 1.1.16 on Windows 2000, perhaps due to fixes to the 43327 -- Configure bugmail:

[VOTE] Release JDBC Pool module v1.0.3

2009-06-08 Thread Filip Hanik - Dev Lists
The release is located here: http://people.apache.org/~fhanik/jdbc-pool/v1.0.3/ ballot [ ] STABLE - I couldn't find any bugs [ ] BETA - I found some bugs but not critical [ ] BROKEN - I found some show stoppers /ballot Any comments ? Thanks, Filip

svn commit: r782791 - in /tomcat/trunk: java/org/apache/catalina/core/StandardHost.java webapps/docs/config/host.xml

2009-06-08 Thread markt
Author: markt Date: Mon Jun 8 21:29:27 2009 New Revision: 782791 URL: http://svn.apache.org/viewvc?rev=782791view=rev Log: Use a more sensible default. Patch suggested by Ian Darwin. Modified: tomcat/trunk/java/org/apache/catalina/core/StandardHost.java

svn commit: r782794 - in /tomcat: current/tc5.5.x/STATUS.txt tc6.0.x/trunk/STATUS.txt

2009-06-08 Thread markt
Author: markt Date: Mon Jun 8 21:35:33 2009 New Revision: 782794 URL: http://svn.apache.org/viewvc?rev=782794view=rev Log: Propose patch Modified: tomcat/current/tc5.5.x/STATUS.txt tomcat/tc6.0.x/trunk/STATUS.txt Modified: tomcat/current/tc5.5.x/STATUS.txt URL:

[SECURITY] CVE-2008-5515 RequestDispatcher directory traversal vulnerability

2009-06-08 Thread Mark Thomas
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 CVE-2008-5515: Apache Tomcat information disclosure vulnerability Severity: Important Vendor: The Apache Software Foundation Versions Affected: Tomcat 4.1.0 to 4.1.39 Tomcat 5.5.0 to 5.5.27 Tomcat 6.0.0 to 6.0.18 The unsupported Tomcat 3.x, 4.0.x