stable

tomcat-9.0.71-1.fc37

FEDORA-2023-a880b79feb created by huwang 2 years ago for Fedora 37

This update includes a rebase from 9.0.70 up to 9.0.71.

  • #2141334 CVE-2022-42252 tomcat: request smuggling [fedora-all]
  • #2158759 CVE-2022-45143 tomcat: JsonErrorReportValve injection [fedora-all]

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2023-a880b79feb

This update has been submitted for testing by huwang.

2 years ago

This update's test gating status has been changed to 'waiting'.

2 years ago

This update's test gating status has been changed to 'passed'.

2 years ago

This update has been pushed to testing.

2 years ago

Installs okay, but need security tag. per MITRE 9.0.21 was not affected by the CVEs menined above and since there is no way to test it, I can't state that they are remediated

Not sure if this is the currect behaviour, but I see:

Server number: 9.0.71.0 as a result of the version parameter

This update has been submitted for stable by bodhi.

2 years ago

This update has been pushed to stable.

2 years ago

Please log in to add feedback.

Metadata
Type
unspecified
Karma
0
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
14 days
Dates
submitted
2 years ago
in testing
2 years ago
in stable
2 years ago
approved
2 years ago

Automated Test Results