RE: [PATCH] SECURITY FIX (Re: Tomcat 3.2.1 JSP Source Disclosure)

2000-12-20 Thread Nacho
ilto:[EMAIL PROTECTED]] > Enviado el: miƩrcoles 20 de diciembre de 2000 8:07 > Para: [EMAIL PROTECTED] > Cc: [EMAIL PROTECTED]; [EMAIL PROTECTED] > Asunto: [PATCH] SECURITY FIX (Re: Tomcat 3.2.1 JSP Source Disclosure) > > > This patch fixes Tomcat 3.2.1 security problem that

[PATCH] SECURITY FIX (Re: Tomcat 3.2.1 JSP Source Disclosure)

2000-12-19 Thread Kazuhiro Kazama
This patch fixes Tomcat 3.2.1 security problem that Yoshiyuki Karezaki (cf. BugRat Report #513) and Robert Ellis (cf. "Tomcat 3.2.1 JSP Source Disclosure") reported. At the same time, this patch fixes the bug Mark Brouwer reported (cf. "[BUG] getProtocol() method on ServletRequest includes CRLF