[tomcat7] 06/06: Release 7.0.56-3+deb8u4
Markus Koschany
apo at moszumanska.debian.org
Mon Aug 15 16:13:51 UTC 2016
This is an automated email from the git hooks/post-receive script.
apo pushed a commit to branch jessie
in repository tomcat7.
commit bcb532fe5cc1fb56b647240c2395438c4d89e9b8
Author: Markus Koschany <apo at debian.org>
Date: Mon Aug 15 17:58:57 2016 +0200
Release 7.0.56-3+deb8u4
---
debian/changelog | 7 ++++---
1 file changed, 4 insertions(+), 3 deletions(-)
diff --git a/debian/changelog b/debian/changelog
index ce9da11..6e9093d 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,13 +1,14 @@
-tomcat7 (7.0.56-3+deb8u4) jessie-security; urgency=medium
+tomcat7 (7.0.56-3+deb8u4) jessie-security; urgency=high
* Team upload.
- * tomcat7.init: Protect /var/log/tomcat7/catalina.out against symlink
+ * Fix CVE-2016-1240:
+ tomcat7.init: Protect /var/log/tomcat7/catalina.out against symlink
attacks and a possible root privilege escalation.
* Do not unconditionally override files in /etc/tomcat7.
Change file permissions to 640 for Debian files in /etc/tomcat7/*
(Closes: #821391)
- -- Markus Koschany <apo at debian.org> Fri, 12 Aug 2016 00:41:51 +0200
+ -- Markus Koschany <apo at debian.org> Mon, 15 Aug 2016 17:58:07 +0200
tomcat7 (7.0.56-3+deb8u3) jessie-security; urgency=high
--
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/pkg-java/tomcat7.git
More information about the pkg-java-commits
mailing list