Bug#494799: CVE-2008-2938: Directory Traversal Vulnerability
Nico Golde
nion at debian.org
Tue Aug 12 11:15:52 UTC 2008
merge 494504 494799
thanks
Hi Christophe,
* Christophe Boyanique <tof-debianreportbug at raceme.org> [2008-08-12 12:37]:
> Package: tomcat5.5
> Version: 5.5.20-2etch3
> Severity: grave
> Tags: security
>
> Tomcat is affected by a directory traversal vulnerability. The problem
> has been fixed in SVN version:
Please check the existing BTS entries before submitting new
bugs. No idea how you missed:
#494504 [G|S|] [tomcat5.5] CVE-2008-1232/CVE-2008-2370: XSS and directory traversal
Check out
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=494504
Cheers
Nico
--
Nico Golde - http://www.ngolde.de - nion at jabber.ccc.de - GPG: 0x73647CFF
For security reasons, all text in this mail is double-rot13 encrypted.
More information about the pkg-java-maintainers
mailing list