[tomcat7] 06/06: Release 7.0.56-3+deb8u4

Markus Koschany apo at moszumanska.debian.org
Mon Aug 15 16:13:51 UTC 2016


This is an automated email from the git hooks/post-receive script.

apo pushed a commit to branch jessie
in repository tomcat7.

commit bcb532fe5cc1fb56b647240c2395438c4d89e9b8
Author: Markus Koschany <apo at debian.org>
Date:   Mon Aug 15 17:58:57 2016 +0200

    Release 7.0.56-3+deb8u4
---
 debian/changelog | 7 ++++---
 1 file changed, 4 insertions(+), 3 deletions(-)

diff --git a/debian/changelog b/debian/changelog
index ce9da11..6e9093d 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,13 +1,14 @@
-tomcat7 (7.0.56-3+deb8u4) jessie-security; urgency=medium
+tomcat7 (7.0.56-3+deb8u4) jessie-security; urgency=high
 
   * Team upload.
-  * tomcat7.init: Protect /var/log/tomcat7/catalina.out against symlink
+  * Fix CVE-2016-1240:
+    tomcat7.init: Protect /var/log/tomcat7/catalina.out against symlink
     attacks and a possible root privilege escalation.
   * Do not unconditionally override files in /etc/tomcat7.
     Change file permissions to 640 for Debian files in /etc/tomcat7/*
     (Closes: #821391)
 
- -- Markus Koschany <apo at debian.org>  Fri, 12 Aug 2016 00:41:51 +0200
+ -- Markus Koschany <apo at debian.org>  Mon, 15 Aug 2016 17:58:07 +0200
 
 tomcat7 (7.0.56-3+deb8u3) jessie-security; urgency=high
 

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/pkg-java/tomcat7.git



More information about the pkg-java-commits mailing list