Bug#861872: Tomcat fails to serve png images

Markus Koschany apo at debian.org
Wed May 10 09:41:03 UTC 2017


Am 06.05.2017 um 14:42 schrieb Support:
> I have been testing this again and can replicate the issue when the protocol="org.apache.coyote.http11.Http11AprProtocol" is set.
> I don’t know why this worked in my initial testing but it is now always failing when using APR, either when directly specified in the protocol or when auto-selecting APR with protocol set to HTTP 1.1.
> 
> I cannot replicate the issue at all when using NIO or BIO.

I was able to reproduce the bug and I think I have fixed the issue in
+deb7u13. I would appreciate it if you could try out the latest packages
before I upload them just to make sure I have not overlooked something. [1]

You can also build tomcat7 from source. The updated CVE-2017-5647.patch
is attached to this e-mail.

This bug only affects Tomcat 7 in Wheezy by the way, Jessie is not affected.

Regards,

Markus

[1] https://people.debian.org/~apo/tomcat7/

-------------- next part --------------
A non-text attachment was scrubbed...
Name: CVE-2017-5647.patch
Type: text/x-diff
Size: 23098 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-java-maintainers/attachments/20170510/a5ccb094/attachment-0001.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 963 bytes
Desc: OpenPGP digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-java-maintainers/attachments/20170510/a5ccb094/attachment-0001.sig>


More information about the pkg-java-maintainers mailing list