Bug#587447: CVE-2010-1157

Moritz Muehlenhoff jmm at debian.org
Mon Jun 28 17:32:52 UTC 2010


Package: tomcat6
Severity: important
Tags: security

Dear Tomcat maintainers,

AFAICS CVE-2010-1157 is still unfixed in sid:
http://tomcat.apache.org/security-6.html

We don't need to update Lenny, since the security impact
is marginal. If you want to have it fixed in stable, you
can still fix it through a point update.

Cheers,
        Moritz

-- System Information:
Debian Release: squeeze/sid
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)

Kernel: Linux 2.6.32-5-686 (SMP w/1 CPU core)
Locale: LANG=C, LC_CTYPE=de_DE.ISO-8859-15 at euro (charmap=ISO-8859-15)
Shell: /bin/sh linked to /bin/bash





More information about the pkg-java-maintainers mailing list