Revisions of tomcat

Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1205527 from Fridrich Strba's avatar Fridrich Strba (fstrba) (revision 110)
Adapt the scripts to run also with javapackages-tools >= 6.3
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1204557 from Fridrich Strba's avatar Fridrich Strba (fstrba) (revision 109)
Fix build after removal of the default %%{java_home} define
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 1155428 from Fridrich Strba's avatar Fridrich Strba (fstrba) (revision 106)
Require(post) util-linux in packages that have script running runuser
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1147338 from Fridrich Strba's avatar Fridrich Strba (fstrba) (revision 104)
Link ecj.jar into the install instead of copying it
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1146829 from Fridrich Strba's avatar Fridrich Strba (fstrba) (revision 103)
post-embargo sync with SLE
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1139530 from Michele Bussolotto's avatar Michele Bussolotto (mbussolotto) (revision 101)
- Update to Tomcat 9.0.85
  * Fixed CVEs:
    + CVE-2023-46589: Apache Tomcat: HTTP request smuggling due to
      incorrect headers parsing (bsc#1217649)
  * Catalina
    + Update:  68378: Align extension to MIME type mappings in the
      global web.xml with those in httpd by adding
      application/vnd.geogebra.slides for ggs, text/javascript for mjs
      and audio/ogg for opus. (markt)
    + Fix:  Background processes should not be run concurrently with
      lifecycle operations of a container. (remm)
    + Fix:  Correct unintended escaping of XML in some WebDAV
      responses. The XML list of support locks when provided in
      response to a PROPFIND request was incorrectly XML escaped.
      (markt)
    + Fix:  68227: Ensure that AsyncListener.onComplete() is called
      if AsyncListener.onError() calls AsyncContext.dispatch().
      (markt)
    + Fix:  68228: Use a 408 status code if a read timeout occurs
      during HTTP request processing. Includes a test case based on
      code provided by adwsingh. (markt)
    + Fix:  67667: TLSCertificateReloadListener prints unreadable
      rendering of X509Certificate#getNotAfter(). (michaelo)
    + Update:  The status servlet included in the manager webapp
      can now output statistics as JSON, using the JSON=true URL
      parameter. (remm)
    + Update:  Optionally allow ServiceBindingPropertySource to
      trim a trailing newline from a file containing a
      property-value. (schultz)
    + Fix:  67793: Ensure the original session timeout is restored
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1139114 from Michele Bussolotto's avatar Michele Bussolotto (mbussolotto) (revision 100)
- Fix server.xml permission (bsc#1217768, bsc#1217402)
- remove serverxmltool and use xsltproc
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1117656 from Fridrich Strba's avatar Fridrich Strba (fstrba) (revision 97)
bsc#1216182, CVE-2023-44487
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1112902 from Fridrich Strba's avatar Fridrich Strba (fstrba) (revision 96)
9.0.80, CVE-2023-41080, bsc#1214666
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1110988 from Fridrich Strba's avatar Fridrich Strba (fstrba) (revision 94)
fix factory build
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 1088487 from Fridrich Strba's avatar Fridrich Strba (fstrba) (revision 93)
9.0.75 == security fixes
Displaying revisions 1 - 20 of 110
openSUSE Build Service is sponsored by