Go to file
Fridrich Strba 680a9d1be0 - Update to Tomcat 9.0.99
* Fixed CVE:
    + CVE-2025-24813: potential RCE and/or information disclosure/corruption with
      partial PUT (bsc#1239302)    
  * Catalina
    + Update: Add tableName configuration on the DataSourcePropertyStore that
      may be used by the WebDAV Servlet. (remm)
    + Update: Improve HTTP If headers processing according to RFC 9110. Based on
      pull request #796 by Chenjp. (remm/markt)
    + Update: Allow readOnly attribute configuration on the Resources element
      and allow configure the readOnly attribute value of the main resources.
      The attribute value will also be used by the default and WebDAV Servlets.
      (remm)
    + Fix: 69285: Optimise the creation of the parameter map for included
      requests. Based on sample code and test cases provided by John
      Engebretson. (markt)
    + Fix: 69527: Avoid rare cases where a cached resource could be set with 0
      content length, or could be evicted immediately. (remm)
    + Fix: Fix possible edge cases (such as HTTP/1.0) with trying to detect
      requests without body for WebDAV LOCK and PROPFIND. (remm)
    + Fix: 69528: Add multi-release JAR support for the bloom
      archiveIndexStrategy of the Resources. (remm)
    + Fix: Improve checks for WEB-INF and META-INF in the WebDAV servlet. Based
      on a patch submitted by Chenjp. (remm)
    + Add: Add a check to ensure that, if one or more web applications are
      potentially vulnerable to CVE-2024-56337, the JVM has been configured to
      protect against the vulnerability and to configure the JVM correctly if
      not. Where one or more web applications are potentially vulnerable to
      CVE-2004-56337 and the JVM cannot be correctly configured or it cannot be
      confirmed that the JVM has been correctly configured, prevent the impacted

OBS-URL: https://build.opensuse.org/package/show/Java:packages/tomcat?expand=0&rev=328
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
2025-03-13 20:42:03 +00:00
Description
No description provided
68 MiB
Languages
Shell 82.9%
XSLT 17.1%