[ All 3 A B C D E F G H I J K L M N O P Q R S T U V W X Y Z ]
×

Package tomcat-1:10.1.36-1.el10_0.2.src download

Name tomcat
Epoch 1
Version 10.1.36
Release 1.el10_0.2
Architecture src
Website/URL http://tomcat.apache.org/
License Apache-2.0
Build Time 2025-08-21 06:58:41
Build Host builder-arm64-1.inferitos.ru
Summary Apache Servlet/JSP Engine, RI for Servlet 6.0/JSP 3.1 API
Repositories AppStream
Description Tomcat is the servlet container that is used in the official Reference Implementation for the Java Servlet and JavaServer Pages technologies. The Java Servlet and JavaServer Pages specifications are developed by Sun under the Java Community Process. Tomcat is developed in an open and participatory environment and released under the Apache Software License version 2.0. Tomcat is intended to be a collaboration of the best-of-breed developers from around the world.
Errata
Size 16771 KiB
Source Project tomcat-10.1.36-1.el10_0.2
SHA-256 checksum e7a87a09cacb3d7c2e1df9a9cff701dc10ddf63368f49eecf4290d248ee0c060
× Full screenshot
Changelog link
* Thu Aug 14 2025 Adam Krajcik <akrajcik@redhat.com> - 1:10.1.36-1.el10_0.2
- Resolves: RHEL-102185
  tomcat: http/2 "MadeYouReset" DoS attack through HTTP/2 control frames (CVE-2025-48989)
- Resolves: RHEL-108905
  tomcat: Denial of service (CVE-2025-52520)

* Wed Aug 13 2025 Adam Krajcik <akrajcik@redhat.com> - 1:10.1.36-1.el10_0.1
- Resolves: RHEL-108899
  tomcat: Apache Commons FileUpload DOS via part headers (CVE-2025-48976)
- Resolves: RHEL-108901
  tomcat: Dos in multipart upload (CVE-2025-48988)
- Resolves: RHEL-108903
  tomcat: Security constraint bypass for pre/post-resources (CVE-2025-49125)
- Resolves: RHEL-108907
  tomcat: Denial of service (CVE-2025-53506)

* Wed May 14 2025 MSVSphere Packaging Team <packager@msvsphere-os.ru> - 1:10.1.36-1
- Rebuilt for MSVSphere 10

* Mon Apr 14 2025 Adam Krajcik <akrajcik@redhat.com> - 1:10.1.36-1
- Rebase tomcat to 10.1.36
- Resolves: RHEL-82925
  tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT (CVE-2025-24813)
- Resolves: RHEL-87272
  tomcat: DoS in examples web application (CVE-2024-54677)
- Resolves: RHEL-87273
  tomcat: Authentication bypass when using Jakarta Authentication API (CVE-2024-52316)
- Resolves: RHEL-85343 - NoClassDefFoundError when using migration tool

* Tue Feb 11 2025 Adam Krajcik <akrajcik@redhat.com> - 1:10.1.8-2
- Resolves: RHEL-78899 Add missing Obsoletes

* Wed Feb 05 2025 Adam Krajcik <akrajcik@redhat.com> - 1:10.1.8-1
- Resolves: RHEL-51222 Upgrade tomcat to 10.1.8

* Tue Oct 29 2024 Troy Dawson <tdawson@redhat.com> - 1:9.0.87-3
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

* Mon Aug 12 2024 Adam Krajcik <akrajcik@redhat.com> - 1:9.0.87-2
- Resolves: RHEL-50166 - Rebase tomcat to version 9.0.87
- Resolves: RHEL-12274 - Use src.zip file as a Source0 instead of tar.gz
- Resolves: RHEL-51277 - Prune changelog to remove non-relevant history
- Resolves: RHEL-52906 - tomcat: Switch to using Java 21 as the default JDK
- Resolves: RHEL-55194 - Fix changelog version
- Resolves: RHEL-46156
  tomcat: Improper Handling of Exceptional Conditions (CVE-2024-34750)

* Mon Jun 24 2024 Troy Dawson <tdawson@redhat.com> - 1:9.0.83-3
- Bump release for June 2024 mass rebuild

* Sat Jan 27 2024 Fedora Release Engineering <releng@fedoraproject.org> - 1:9.0.83-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild