networking/daemons

tomcat - Apache Servlet/JSP Engine, RI for Servlet 2.4/JSP 2.0 API

Website: http://tomcat.apache.org/
License: Apache Software License
Vendor: AnNyung Packaging Team
Description:
Tomcat is the servlet container that is used in the official Reference
Implementation for the Java Servlet and JavaServer Pages technologies.
The Java Servlet and JavaServer Pages specifications are developed by
Sun under the Java Community Process.

Tomcat is developed in an open and participatory environment and
released under the Apache Software License. Tomcat is intended to be
a collaboration of the best-of-breed developers from around the world.
We invite you to participate in this open development project.

Packages

tomcat-7.0.105-1.an2.src [9.3 MiB] Changelog by JoungKyun.Kim (2020-08-15):
- update 7.0.105
  http://archive.apache.org/dist/tomcat/tomcat-7/v7.0.105/RELEASE-NOTES

- security issues
  . CVE-2020-13935 Important: WebSocket DoS
tomcat-7.0.104-1.an2.src [9.3 MiB] Changelog by JoungKyun.Kim (2020-06-20):
- update 7.0.104
  http://archive.apache.org/dist/tomcat/tomcat-7/v7.0.103/RELEASE-NOTES
  http://archive.apache.org/dist/tomcat/tomcat-7/v7.0.104/RELEASE-NOTES

-security isseus
  . CVE-2020-9484 High: Remote Code Execution via session persistence
tomcat-7.0.100-1.an2.src [9.3 MiB] Changelog by JoungKyun.Kim (2020-03-04):
- update 7.0.100
  http://mirror.apache-kr.org/tomcat/tomcat-7/v7.0.92/RELEASE-NOTES
  http://mirror.apache-kr.org/tomcat/tomcat-7/v7.0.93/RELEASE-NOTES
  http://mirror.apache-kr.org/tomcat/tomcat-7/v7.0.94/RELEASE-NOTES
  http://mirror.apache-kr.org/tomcat/tomcat-7/v7.0.95/RELEASE-NOTES
  http://mirror.apache-kr.org/tomcat/tomcat-7/v7.0.96/RELEASE-NOTES
  http://mirror.apache-kr.org/tomcat/tomcat-7/v7.0.97/RELEASE-NOTES
  http://mirror.apache-kr.org/tomcat/tomcat-7/v7.0.98/RELEASE-NOTES
  http://mirror.apache-kr.org/tomcat/tomcat-7/v7.0.99/RELEASE-NOTES
  http://mirror.apache-kr.org/tomcat/tomcat-7/v7.0.100/RELEASE-NOTES
  https://tomcat.apache.org/tomcat-7.0-doc/changelog.html
- security issues
  . CVE-2020-1938
  . CVE-2019-17563 
  . CVE-2019-12418
  . CVE-2019-0221
  . CVE-2019-0232
tomcat-7.0.91-1.an2.src [8.8 MiB] Changelog by JoungKyun.Kim (2018-10-20):
- update 7.0.91
  http://mirror.apache-kr.org/tomcat/tomcat-7/v7.0.91/RELEASE-NOTES
  https://tomcat.apache.org/tomcat-7.0-doc/changelog.html

- security issues
  . CVE-2018-11784 Moderate: Open Redirect
tomcat-7.0.90-1.an2.src [8.8 MiB] Changelog by JoungKyun.Kim (2018-07-28):
- update 7.0.90
  http://mirror.apache-kr.org/tomcat/tomcat-7/v7.0.90/RELEASE-NOTES
  https://tomcat.apache.org/tomcat-7.0-doc/changelog.html

- security issues
  . CVE-2018-8034 Low: host name verification missing in WebSocket client
  . CVE-2018-8014 Low: CORS filter has insecure defaults
  . CVE-2018-1305 Important: A bug in the UTF-8 decoder can lead to DoS
tomcat-7.0.86-1.an2.src [8.7 MiB] Changelog by JoungKyun.Kim (2018-04-21):
- update 7.0.86
tomcat-7.0.85-1.an2.src [8.7 MiB] Changelog by JoungKyun.Kim (2018-04-08):
- update 7.0.85

- security issues
  . CVE-2018-1305  Important: Security constraint annotations applied too late
  . CVE-2018-1304  Important: Security constraints mapped to context root are ignored
  . CVE-2017-15706 Low: Incorrectly documented CGI search algorithm
tomcat-7.0.82-1.an2.src [8.7 MiB] Changelog by JoungKyun.Kim (2017-10-21):
- update 7.0.82

- security issues
  . CVE-2017-12617 Important: Remote Code Execution
  . CVE-2017-12616 Important: Information Disclosure
tomcat-7.0.79-1.an2.src [8.6 MiB] Changelog by JoungKyun.Kim (2017-07-30):
- update 7.0.79

- security issues
  . CVE-2017-5664 Important: Security Constraint Bypass
tomcat-7.0.77-1.an2.src [8.6 MiB] Changelog by JoungKyun.Kim (2017-04-15):
- update 7.0.77

- security issues
  . CVE-2017-5647 Important: Information Disclosure
tomcat-7.0.76-1.an2.src [8.6 MiB] Changelog by JoungKyun.Kim (2017-03-21):
- update 7.0.76

- security issues
  . CVE-2016-3092 Moderate: Denial of Service
  . CVE-2016-6797 Low: Unrestricted Access to Global Resources
  . CVE-2016-6796 Low: Security Manager Bypass
  . CVE-2016-6794 Low: System Property Disclosure
  . CVE-2016-5018 Low: Security Manager Bypass
  . CVE-2016-0762 Low: Timing Attack
  . CVE-2016-6816 Important: Information Disclosure
  . CVE-2016-8735 Important: Remote Code Execution
  . CVE-2016-8745 Important: Information Disclosure
tomcat-7.0.70-1.an2.src [8.6 MiB] Changelog by JoungKyun.Kim (2016-03-24):
- update 7.0.70

- security issues
  . CVE-2016-3092
    allows remote attackers to cause a denial of service (CPU consumption)
    via a long boundary string.
tomcat-7.0.68-1.an2.src [8.6 MiB] Changelog by JoungKyun.Kim (2016-03-24):
- update 7.0.68

- security issues
  . CVE-2015-5345 Directory disclosure
  . CVE-2015-5351 CSRF token leak
  . CVE-2016-0706 Security Manager bypass
  . CVE-2016-0714 Security Manager bypass
  . CVE-2016-0763 Security Manager bypass
tomcat-7.0.67-1.an2.src [8.6 MiB] Changelog by JoungKyun.Kim (2016-02-04):
- update 7.0.67
tomcat-7.0.59-1.an2.src [8.6 MiB] Changelog by JoungKyun.Kim (2015-02-09):
- update 7.0.59
- enhanced init for multi instance
tomcat-7.0.55-1.an2.src [8.6 MiB] Changelog by JoungKyun.Kim (2014-07-30):
- update 7.0.55
  See also http://tomcat.apache.org/tomcat-7.0-doc/changelog.html

- security issuess
  . CVE-2014-0099
  . CVE-2014-0096
  . CVE-2014-0075
  . CVE-2014-0119
tomcat-7.0.53-1.an2.src [8.5 MiB] Changelog by JoungKyun.Kim (2014-04-28):
- update 7.0.53
  See also http://tomcat.apache.org/tomcat-7.0-doc/changelog.html
tomcat-7.0.52-1.an2.src [8.0 MiB] Changelog by JoungKyun.Kim (2014-03-21):
- update 7.0.52
- security issuess
  . CVE-2013-4322
tomcat-7.0.50-1.an2.src [8.0 MiB] Changelog by JoungKyun.Kim (2014-01-20):
- update 7.0.50
tomcat-7.0.47-1.an2.src [7.9 MiB] Changelog by JoungKyun.Kim (2013-11-21):
- update 7.0.47
- /etc/sysconfig/tomcat에서 TC_AUTHBIND=yes 설정으로 authbind를 지원
- 설정 파일에서 log rotate하는 것을 rotatelog에서 하도록 변경
tomcat-7.0.42-1.an2.src [7.7 MiB] Changelog by JoungKyun.Kim (2013-07-12):
- update 7.0.42
- fixed security issues
  . http://issues.apache.org/bugzilla/show_bug.cgi?id=55119
    Ensure that the build process produces Javadoc that is not vulnerable to
    CVE-2013-1571.
tomcat-7.0.40-1.an2.src [7.6 MiB] Changelog by JoungKyun.Kim (2013-06-01):
- update 7.0.40
  See also http://tomcat.apache.org/tomcat-7.0-doc/changelog.html
- fixed security issues
  . CVE-2013-2071 runtime exception in onComplete of AsyncListener
tomcat-7.0.37-1.an2.src [7.5 MiB] Changelog by JoungKyun.Kim (2013-03-12):
- 7.0.37 update
tomcat-7.0.34-1.an2.src [7.5 MiB] Changelog by JoungKyun.Kim (2013-01-10):
- 7.0.34 update
tomcat-7.0.30-1.an2.src [7.4 MiB] Changelog by JoungKyun.Kim (2012-09-07):
- 7.0.30 update
tomcat-7.0.27-2.an2.src [7.4 MiB] Changelog by JoungKyun.Kim (2012-04-13):
- support multi instance on init script
tomcat-7.0.27-1.an2.src [7.4 MiB] Changelog by JoungKyun.Kim (2012-04-11):
- first packaged

Listing created by Repoview-0.6.6-1.el6