Bug#692440: tomcat7: CVE-2012-2733 CVE-2012-3439

2012-11-26 Thread tony mancill
On 11/17/2012 09:58 PM, Michael Gilbert wrote:
> Hi, I've uploaded an nmu fixing this issue.  Please see attached patch.
> 
> Best wishes,
> Mike

Hi Mike,

Thank you for preparing patches and uploading NMUs for tomcat6 and
tomcat7!  It's very much appreciated.

I have imported the updated version into the respective packaging repos.

Thank you,
tony





signature.asc
Description: OpenPGP digital signature
__
This is the maintainer address of Debian's Java team
. 
Please use
debian-j...@lists.debian.org for discussions and questions.

Bug#692440: tomcat7: CVE-2012-2733 CVE-2012-3439

2012-11-17 Thread Michael Gilbert
Hi, I've uploaded an nmu fixing this issue.  Please see attached patch.

Best wishes,
Mike


tomcat7.patch
Description: Binary data
__
This is the maintainer address of Debian's Java team
. 
Please use
debian-j...@lists.debian.org for discussions and questions.

Bug#692440: tomcat7: CVE-2012-2733 CVE-2012-3439

2012-11-06 Thread Moritz Muehlenhoff
Package: tomcat7
Severity: grave
Tags: security
Justification: user security hole

Please see http://tomcat.apache.org/security-7.html

Since Wheezy is frozen, please apply isolated security fixes instead
of updating to a new upstream release.

Cheers,
Moritz

__
This is the maintainer address of Debian's Java team
. 
Please use
debian-j...@lists.debian.org for discussions and questions.