Bug#494799: CVE-2008-2938: Directory Traversal Vulnerability

Nico Golde nion at debian.org
Tue Aug 12 11:15:52 UTC 2008


merge 494504 494799
thanks

Hi Christophe,
* Christophe Boyanique <tof-debianreportbug at raceme.org> [2008-08-12 12:37]:
> Package: tomcat5.5
> Version: 5.5.20-2etch3
> Severity: grave
> Tags: security
> 
> Tomcat is affected by a directory traversal vulnerability. The problem
> has been fixed in SVN version:

Please check the existing BTS entries before submitting new 
bugs. No idea how you missed:
#494504 [G|S|] [tomcat5.5] CVE-2008-1232/CVE-2008-2370: XSS and directory traversal

Check out 
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=494504

Cheers
Nico
-- 
Nico Golde - http://www.ngolde.de - nion at jabber.ccc.de - GPG: 0x73647CFF
For security reasons, all text in this mail is double-rot13 encrypted.





More information about the pkg-java-maintainers mailing list