DetailsUpdated tomcat packages that fix multiple security issues are now available
This update corrects several security vulnerabilities in the Tomcat SolutionThis update is available via Red Hat Network. Details on how to use the
Red Hat Network to apply this update are available at http://www.redhat.com/docs/manuals/satellite/Red_Hat_Network_Satellite-5.0.0/html/Installation_Guide/s1-maintenance-update.html Updated packages
Bugs fixed (see bugzilla for more information)446393 - CVE-2008-1947 Tomcat host manager xss - name field References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1232
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1947 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2370 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2938 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3271 http://www.redhat.com/security/updates/classification/#low http://tomcat.apache.org/security-5.html These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from: https://www.redhat.com/security/team/key/#package The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/ |
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||