Linux repositories inspector

tomcat-el-2.2-api - Expression Language v2.2 API

Expression Language 2.2.
CentOS iconCentOS 7.7.1908
CentOS iconCentOS 7.7.1908 osrpm7.0.76-9.el7_62020-01-0780.4 kiB113 kiBCentOS BuildSystem
CentOS iconCentOS 7.7.1908 updatesrpm7.0.76-11.el7_72020-03-1881.5 kiB113 kiBCentOS BuildSystem

Latest updates

CentOS icon

CentOS 7.7.1908 updates: Version 7.0.76-11.el7_7 introduced

  • Resolves: rhbz#1806801 CVE-2020-1938 tomcat: Apache Tomcat AJP File Read/Inclusion Vulnerability
CentOS icon

CentOS 7.7.1908 os: Version 7.0.76-9.el7_6 introduced

  • Resolves: rhbz#1641873 CVE-2018-11784 tomcat: Open redirect in default servlet
CentOS icon

CentOS 7.6.1810 cr: Version 7.0.76-9.el7 introduced

  • Resolves: rhbz#1641873 CVE-2018-11784 tomcat: Open redirect in default servlet
  • Resolves: rhbz#1552375 CVE-2018-1304 tomcat: Incorrect handling of empty string URL in security constraints can lead to unintended exposure of resources
  • Resolves: rhbz#1552374 CVE-2018-1305 tomcat: Late application of security constraints can lead to resource exposure for unauthorised users
  • Resolves: rhbz#1590182 CVE-2018-8014 tomcat: Insecure defaults in CORS filter enable 'supportsCredentials' for all origins
  • Resolves: rhbz#1608609 CVE-2018-8034 tomcat: host name verification missing in WebSocket client
  • Resolves: rhbz#1588703 Backport of Negative maxCookieCount value causes exception for Tomcat
  • Resolves: rhbz#1472950 shutdown_wait option is not working for Tomcat
  • Resolves: rhbz#1455483 Add support for characters "<" and ">" to the possible whitelist values
CentOS icon

CentOS 7.6.1810 updates: Updated from 7.0.76-8.el7_5 to 7.0.76-9.el7_6

  • Resolves: rhbz#1641873 CVE-2018-11784 tomcat: Open redirect in default servlet
CentOS icon

CentOS 7.6.1810 updates: Version 7.0.76-8.el7_5 introduced

  • Resolves: rhbz#1608608 CVE-2018-1336 tomcat: A bug in the UTF 8 decoder can lead to DoS
CentOS icon

CentOS 7.6.1810 os: Version 7.0.76-7.el7_5 introduced

  • Resolves: rhbz#1607893 Deadlock occurs while sending to a closing session.
CentOS icon

CentOS 7.4.1708 updates: Version 7.0.76-3.el7_4 introduced

  • Resolves: rhbz#1498343 CVE-2017-12615 CVE-2017-12617 tomcat: various flaws
  • Resolves: rhbz#1495655 CVE-2017-7674 tomcat: Vary header not added by CORS filter leading to cache poisoning
  • Resolves: rhbz#1470597 CVE-2017-5647 Add follow up revision
CentOS icon

CentOS 7.4.1708 os: Version 7.0.76-2.el7 introduced

  • Resolves: rhbz#1459747 CVE-2017-5664 tomcat: Security constrained bypass in error page mechanism
  • Resolves: rhbz#1441481 CVE-2017-5647 tomcat: Incorrect handling of pipelined requests when send file was used

Related packages

tomcat - Apache Servlet/JSP/EL Engine, RI for Servlet 4.0/JSP 2.3/EL 3.0 API
⇧ Top