Bug#866128: closed by Markus Koschany <apo at debian.org> (Re: Bug#866128: tomcat 8 critical bug)

Luigi Canali lcanali at fedcms.com
Tue Jun 27 16:56:24 UTC 2017


thank you!

On Tue, Jun 27, 2017 at 12:42 PM, Debian Bug Tracking System <
owner at bugs.debian.org> wrote:

> This is an automatic notification regarding your Bug report
> which was filed against the tomcat8 package:
>
> #866128: tomcat 8 critical bug
>
> It has been closed by Markus Koschany <apo at debian.org>.
>
> Their explanation is attached below along with your original report.
> If this explanation is unsatisfactory and you have not received a
> better one in a separate message then please contact Markus Koschany <
> apo at debian.org> by
> replying to this email.
>
>
> --
> 866128: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=866128
> Debian Bug Tracking System
> Contact owner at bugs.debian.org with problems
>
>
> ---------- Forwarded message ----------
> From: Markus Koschany <apo at debian.org>
> To: Luigi Canali <lcanali at fedcms.com>
> Cc: 866128-done at bugs.debian.org
> Bcc:
> Date: Tue, 27 Jun 2017 18:38:58 +0200
> Subject: Re: Bug#866128: tomcat 8 critical bug
> Version: 8.0.14-1+deb8u8
>
> Am 27.06.2017 um 18:09 schrieb Luigi Canali:
> > Package: tomcat8
> > Version: 8.0.14-1+deb8u5
> >
> > The current Jessie packages for Tomcat 8 has a bug that really should be
> > taken care of:
> >
> > https://bz.apache.org/bugzilla/show_bug.cgi?id=57544
> > <https://bz.apache.org/bugzilla/show_bug.cgi?id=57544>
> >
> > when this bug kicks in, the JVM starts stacking up threads to the point
> > where the machine becomes unusable - in essence a self-induced denial of
> > service.
> >
> > Fortunately the bug has been fixed in Tomcat 8.0.19 or later
> >
> > I'm requesting that tomcat 8 debian jessie packages get updated at least
> > to version 8.0.19.
>
> The current version of tomcat8 in Jessie is 8.0.14-1+deb8u10. This issue
> was fixed in +deb8u7 and +deb8u8.
>
> Markus
>
>
>
> ---------- Forwarded message ----------
> From: Luigi Canali <lcanali at fedcms.com>
> To: submit at bugs.debian.org
> Cc:
> Bcc:
> Date: Tue, 27 Jun 2017 12:09:52 -0400
> Subject: tomcat 8 critical bug
> Package: tomcat8
> Version: 8.0.14-1+deb8u5
>
> The current Jessie packages for Tomcat 8 has a bug that really should be
> taken care of:
>
> https://bz.apache.org/bugzilla/show_bug.cgi?id=57544
>
> when this bug kicks in, the JVM starts stacking up threads to the point
> where the machine becomes unusable - in essence a self-induced denial of
> service.
>
> Fortunately the bug has been fixed in Tomcat 8.0.19 or later
>
> I'm requesting that tomcat 8 debian jessie packages get updated at least
> to version 8.0.19.
>
> thanks!
> Luigi
>
> --
>
>
>
> Luigi Canali, PMP, GSLC
> _________________________________________
> FedCMS
> (301) 537-9009 - mobile
> (202) 318-7628 - fax
> LCanali at FedCMS.com
> www.FedCMS.com
>
>
>
> ______________________________________________________________________
>
> Confidentiality Notice: The information contained in this message is
> intended only for the use of the
> addressee, and should be considered confidential and/or privileged. If the
> reader of this message is not the intended recipient, or the employee or
> agent responsible to deliver it to the intended recipient, you are hereby
> notified that any dissemination, distribution or copying of this
> communication and its contents is strictly prohibited.  If you have
> received this communication in error, please notify the sender immediately.
> ______________________________________________________________________
>
>
>
>


-- 



Luigi Canali, PMP, GSLC
_________________________________________
FedCMS
(301) 537-9009 - mobile
(202) 318-7628 - fax
LCanali at FedCMS.com
www.FedCMS.com



______________________________________________________________________

Confidentiality Notice: The information contained in this message is
intended only for the use of the
addressee, and should be considered confidential and/or privileged. If the
reader of this message is not the intended recipient, or the employee or
agent responsible to deliver it to the intended recipient, you are hereby
notified that any dissemination, distribution or copying of this
communication and its contents is strictly prohibited.  If you have
received this communication in error, please notify the sender immediately.
______________________________________________________________________
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/pkg-java-maintainers/attachments/20170627/37c29e12/attachment.html>


More information about the pkg-java-maintainers mailing list