Return-Path: Delivered-To: apmail-tomcat-users-archive@www.apache.org Received: (qmail 59247 invoked from network); 24 Jun 2009 08:07:31 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (140.211.11.3) by minotaur.apache.org with SMTP; 24 Jun 2009 08:07:31 -0000 Received: (qmail 49504 invoked by uid 500); 24 Jun 2009 08:07:38 -0000 Delivered-To: apmail-tomcat-users-archive@tomcat.apache.org Received: (qmail 49468 invoked by uid 500); 24 Jun 2009 08:07:38 -0000 Mailing-List: contact users-help@tomcat.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: "Tomcat Users List" Delivered-To: mailing list users@tomcat.apache.org Received: (qmail 49457 invoked by uid 99); 24 Jun 2009 08:07:38 -0000 Received: from athena.apache.org (HELO athena.apache.org) (140.211.11.136) by apache.org (qpsmtpd/0.29) with ESMTP; Wed, 24 Jun 2009 08:07:38 +0000 X-ASF-Spam-Status: No, hits=-0.0 required=10.0 tests=SPF_PASS X-Spam-Check-By: apache.org Received-SPF: pass (athena.apache.org: domain of ndiulgerov@imx.fr designates 213.30.158.214 as permitted sender) Received: from [213.30.158.214] (HELO smtp.codix-france.com) (213.30.158.214) by apache.org (qpsmtpd/0.29) with ESMTP; Wed, 24 Jun 2009 08:07:27 +0000 Received: from mail2.imx.fr (unknown [192.9.202.6]) by smtp.codix-france.com (Postfix) with ESMTP id 9AA1319639D for ; Wed, 24 Jun 2009 10:07:20 +0200 (CEST) Received: from [192.9.202.231] ([192.9.202.231]) by mail2.imx.fr with Microsoft SMTPSVC(6.0.3790.3959); Wed, 24 Jun 2009 11:06:51 +0300 Message-ID: <4A41DE9B.1090808@imx.fr> Date: Wed, 24 Jun 2009 11:06:51 +0300 From: Niki Diulgerov User-Agent: Thunderbird 2.0.0.22 (Windows/20090605) MIME-Version: 1.0 To: Tomcat Users List Subject: potential thread? and what should we do? Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-OriginalArrivalTime: 24 Jun 2009 08:06:51.0072 (UTC) FILETIME=[BAAF9C00:01C9F4A2] X-MailScanner-ID: 9AA1319639D.E813D X-CODIX-BG-MailScanner: Found to be clean X-CODIX-BG-MailScanner-From: ndiulgerov@imx.fr X-CODIX-BG-MailScanner-To: users@tomcat.apache.org X-Virus-Checked: Checked by ClamAV on apache.org X-Old-Spam-Status: No Hello there, recently I'm reading in the security news channels that there are discovered "multiple vulnerabilities" in tomcat and almost all versions are affected. For example these news from today: http://www.linuxsecurity.com/content/view/149201?rdf On the other side, I can see that the latest version of tomcat is 5.5.27 and the package is created in 2008 (06-Sep). Are there any fixes, or some new version comes soon? Does someone know something about this. -- Best regards, Nikolay Diulgerov Network Administrator --------------------------------------------------------------------- To unsubscribe, e-mail: users-unsubscribe@tomcat.apache.org For additional commands, e-mail: users-help@tomcat.apache.org