tomcat-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From ma...@apache.org
Subject svn propchange: r892815 - svn:log
Date Fri, 29 Jan 2010 15:03:24 GMT
Author: markt
Revision: 892815
Modified property: svn:log

Modified: svn:log at Fri Jan 29 15:03:24 2010
------------------------------------------------------------------------------
--- svn:log (original)
+++ svn:log Fri Jan 29 15:03:24 2010
@@ -4,3 +4,5 @@
  - improved validation of WAR file names
  - make sure error messages match the action
  - the return from File.getCanonicalPath() may or may not return a final separator for directories
+
+This fixes CVE-2009-2693, CVE-2009-2901 & CVE-2009-2902


---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscribe@tomcat.apache.org
For additional commands, e-mail: dev-help@tomcat.apache.org


Mime
View raw message