285 Commits

Author SHA256 Message Date
Ana Guerrero
3825040e04 Accepting request 1129044 from Java:packages
OBS-URL: https://build.opensuse.org/request/show/1129044
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=99
2023-11-27 21:43:32 +00:00
Michele Bussolotto
6c8547a641 Accepting request 1128665 from home:RMestre:branches:Java:packages
- replace prep setup and patches macro with autosetup

OBS-URL: https://build.opensuse.org/request/show/1128665
OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=281
2023-11-27 08:18:24 +00:00
Ana Guerrero
688173d020 Accepting request 1121149 from Java:packages
OBS-URL: https://build.opensuse.org/request/show/1121149
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=98
2023-10-30 21:10:40 +00:00
0e5a696eed Accepting request 1121130 from home:mbussolotto:branches:Java:packages
Add info to the current changelog
  * Fixed CVEs:
    + CVE-2023-45648: Improve trailer header parsing (bsc#1216118)
    + CVE-2023-42794: FileUpload: remove tmp files to avoid DoS 
      on Windows (bsc#1216120)
    + CVE-2023-42795: Improve handling of failures during recycle()
      methods (bsc#1216119)

OBS-URL: https://build.opensuse.org/request/show/1121130
OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=279
2023-10-30 10:54:18 +00:00
bce8682351 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=278 2023-10-17 05:19:46 +00:00
196f9c87df OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=277 2023-10-16 23:41:44 +00:00
Ana Guerrero
e8c042dbae Accepting request 1117656 from Java:packages
bsc#1216182, CVE-2023-44487

OBS-URL: https://build.opensuse.org/request/show/1117656
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=97
2023-10-13 21:15:37 +00:00
49d0e0bf09 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=275 2023-10-13 11:20:11 +00:00
Ana Guerrero
d103309a7a Accepting request 1112902 from Java:packages
9.0.80, CVE-2023-41080, bsc#1214666

OBS-URL: https://build.opensuse.org/request/show/1112902
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=96
2023-09-22 19:47:35 +00:00
ddb247a2f7 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=273 2023-09-21 20:06:00 +00:00
b2fc5bc4ae Accepting request 1112820 from home:mbussolotto:branches:Java:packages
- Fixed CVEs:
  * CVE-2023-41080: Avoid protocol relative redirects in FORM authentication. (bsc#1214666)
- Added patches:
  * tomcat-9.0.75-CVE-2023-41080.patch

OBS-URL: https://build.opensuse.org/request/show/1112820
OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=272
2023-09-21 14:49:07 +00:00
Dominique Leuenberger
2bd8ca47b9 Accepting request 1111850 from Java:packages
OBS-URL: https://build.opensuse.org/request/show/1111850
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=95
2023-09-20 11:25:59 +00:00
1d620875c8 Accepting request 1111848 from home:fstrba:branches:Java:packages
OBS-URL: https://build.opensuse.org/request/show/1111848
OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=270
2023-09-18 06:12:05 +00:00
Ana Guerrero
f291984af0 Accepting request 1110988 from Java:packages
fix factory build

OBS-URL: https://build.opensuse.org/request/show/1110988
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=94
2023-09-14 14:25:36 +00:00
2d2bb753f4 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=268 2023-09-14 05:18:32 +00:00
99a19525a5 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=267 2023-09-12 11:30:53 +00:00
49b963559c OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=266 2023-09-12 11:27:36 +00:00
d3b5cc15e7 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=265 2023-09-12 11:22:53 +00:00
d6dff44ec2 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=264 2023-09-12 11:12:01 +00:00
8907d86932 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=263 2023-09-12 11:03:57 +00:00
ef704ca071 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=262 2023-09-12 11:01:36 +00:00
Dominique Leuenberger
bd9b66dc8c Accepting request 1088487 from Java:packages
9.0.75 == security fixes

OBS-URL: https://build.opensuse.org/request/show/1088487
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=93
2023-05-23 12:54:29 +00:00
0b32a6ad02 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=260 2023-05-23 04:40:11 +00:00
cdb812cd14 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=259 2023-05-22 18:03:40 +00:00
dc50fb9b4f OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=258 2023-05-22 17:59:49 +00:00
Dominique Leuenberger
a95510000b Accepting request 1077842 from Java:packages
OBS-URL: https://build.opensuse.org/request/show/1077842
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=92
2023-04-07 16:17:06 +00:00
Michele Bussolotto
6bc85246b3 Accepting request 1077841 from home:mbussolotto:branches:Java:packages
- Fixed CVEs:
  * CVE-2022-45143: JsonErrorReportValve: add escape for type, message or description (bsc#1206840)
- Added patches:
  * tomcat-9.0.43-CVE-2022-45143.patch

OBS-URL: https://build.opensuse.org/request/show/1077841
OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=256
2023-04-07 08:08:28 +00:00
Dominique Leuenberger
cd9f45af8e Accepting request 1074951 from Java:packages
OBS-URL: https://build.opensuse.org/request/show/1074951
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=91
2023-03-28 15:51:19 +00:00
Michele Bussolotto
6ef0f7376a Accepting request 1073926 from home:mbussolotto:branches:Java:packages
- Fixed CVEs:
  * CVE-2023-28708: tomcat: not including the secure attribute
    causes information disclosure (bsc#1209622)
- Added patches:
  * tomcat-9.0.43-CVE-2023-28708.patch

OBS-URL: https://build.opensuse.org/request/show/1073926
OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=254
2023-03-28 10:01:54 +00:00
Dominique Leuenberger
a7931e9b5b Accepting request 1069054 from Java:packages
OBS-URL: https://build.opensuse.org/request/show/1069054
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=90
2023-03-03 21:28:14 +00:00
db57f882c4 Accepting request 1068181 from home:mbussolotto:branches:Java:packages
- Fixed CVEs:
  * CVE-2023-24998: tomcat,tomcat6: FileUpload DoS with excessive parts (bsc#1208513)
- Added patches:
  * tomcat-9.0.43-CVE-2023-24998.patch

OBS-URL: https://build.opensuse.org/request/show/1068181
OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=252
2023-03-03 05:35:10 +00:00
Dominique Leuenberger
d27436e5b0 Accepting request 1058900 from Java:packages
OBS-URL: https://build.opensuse.org/request/show/1058900
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=89
2023-01-17 16:35:48 +00:00
503278cde3 Accepting request 1058853 from home:mbussolotto:branches:Java:packages
- set logrotate for localhost.log, manager.log, host-manager.log and localhost_access_log.txt
- use logrotate for catalina.out
  * update tomcat-serverxml-tool and spec to configure server.xml
- Added patch:
  * tomcat-9.0-logrotate_everything.patch
  * tomcat-serverxml-tool.tar.gz
- Removed:
  * tomcat-serverxml-tool-1.0.tar.gz

OBS-URL: https://build.opensuse.org/request/show/1058853
OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=250
2023-01-17 12:37:11 +00:00
Dominique Leuenberger
b7b97582b2 Accepting request 1039508 from Java:packages
OBS-URL: https://build.opensuse.org/request/show/1039508
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=88
2022-12-02 12:13:36 +00:00
7044f5b497 Accepting request 1039114 from home:mbussolotto:branches:Java:packages
- Use catalina.out for logging (bsc#1205647)
- Added patches:
  * tomcat-9.0-fix_catalina.patch

OBS-URL: https://build.opensuse.org/request/show/1039114
OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=248
2022-12-02 08:23:58 +00:00
Dominique Leuenberger
8b6b4a7ce9 Accepting request 1037218 from Java:packages
sec. fixes

OBS-URL: https://build.opensuse.org/request/show/1037218
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=87
2022-11-22 15:10:22 +00:00
0383717111 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=246 2022-11-22 06:28:25 +00:00
d041727005 Accepting request 1037056 from home:mbussolotto:branches:Java:packages
- Fixed CVEs:
  * CVE-2022-42252: reject invalid content-length requests. (bsc#1204918)
- Added patches:
  * tomcat-9.0.43-CVE-2022-42252.patch

OBS-URL: https://build.opensuse.org/request/show/1037056
OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=245
2022-11-21 12:28:39 +00:00
803dc2e41e Accepting request 1030223 from home:mbussolotto:branches:Java:packages
- Fixed CVEs:
  * CVE-2021-43980: Improve the recycling of Processor objects to make it more robust. (bsc#1203868)
- Added patches:
  * tomcat-9.0.43-CVE-2021-43980.patch

OBS-URL: https://build.opensuse.org/request/show/1030223
OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=244
2022-10-20 16:18:49 +00:00
Dominique Leuenberger
4124490743 Accepting request 989036 from Java:packages
do not hardcode /usr/libexecdir, but use %_libexecdir instead

OBS-URL: https://build.opensuse.org/request/show/989036
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=86
2022-07-14 14:34:22 +00:00
0a03fd758a OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=242 2022-07-13 13:43:12 +00:00
Dominique Leuenberger
62c2d77d81 Accepting request 987800 from Java:packages
bsc#1201081

OBS-URL: https://build.opensuse.org/request/show/987800
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=85
2022-07-08 12:03:10 +00:00
c75e4afeff OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=240 2022-07-08 06:29:53 +00:00
Dominique Leuenberger
eda3592fb6 Accepting request 978763 from Java:packages
sync changes with sle

OBS-URL: https://build.opensuse.org/request/show/978763
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=84
2022-05-24 18:33:30 +00:00
ab654215d5 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=238 2022-05-23 17:08:25 +00:00
Dominique Leuenberger
889daa511d Accepting request 967588 from Java:packages
OBS-URL: https://build.opensuse.org/request/show/967588
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=83
2022-04-07 22:28:32 +00:00
45b1f5a3f7 Accepting request 967485 from home:mbussolotto:branches:Java:packages
- Security hardening. Deprecate getResources() and always return null. (bsc#1198136)
- Added patch: tomcat-9.0-hardening_getResources.patch

OBS-URL: https://build.opensuse.org/request/show/967485
OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=236
2022-04-07 17:49:31 +00:00
Dominique Leuenberger
e9c006bd2f Accepting request 957023 from Java:packages
bsc#1196137

OBS-URL: https://build.opensuse.org/request/show/957023
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=82
2022-02-23 18:06:49 +00:00
2ed7e67af2 OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=235 2022-02-23 11:59:03 +00:00
Dominique Leuenberger
ed9a86a54f Accepting request 956682 from Java:packages
- Fixed CVEs:
  * CVE-2022-23181: Make calculation of session storage location more robust (bsc#1195255)
- Added patches:
  * tomcat-9.0-CVE-2022-23181.patch

OBS-URL: https://build.opensuse.org/request/show/956682
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tomcat?expand=0&rev=81
2022-02-22 20:18:24 +00:00