You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@tomcat.apache.org by ma...@apache.org on 2017/09/25 23:31:36 UTC

svn commit: r1809671 - /tomcat/trunk/webapps/docs/changelog.xml

Author: markt
Date: Mon Sep 25 23:31:36 2017
New Revision: 1809671

URL: http://svn.apache.org/viewvc?rev=1809671&view=rev
Log:
Update changelog

Modified:
    tomcat/trunk/webapps/docs/changelog.xml

Modified: tomcat/trunk/webapps/docs/changelog.xml
URL: http://svn.apache.org/viewvc/tomcat/trunk/webapps/docs/changelog.xml?rev=1809671&r1=1809670&r2=1809671&view=diff
==============================================================================
--- tomcat/trunk/webapps/docs/changelog.xml (original)
+++ tomcat/trunk/webapps/docs/changelog.xml Mon Sep 25 23:31:36 2017
@@ -51,6 +51,12 @@
         Use the correct path when loading the JVM <code>logging.properties</code>
         file for Java 9. (rjung)
       </fix>
+      <fix>
+        Add additional validation to the resource handling required to fix
+        CVE-2017-12617 on Windows. The checks were being performed elsewhere but
+        adding them to the resource handling ensures that the checks are always
+        performed. (markt)
+      </fix>
     </changelog>
   </subsection>
   <subsection name="Other">



---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscribe@tomcat.apache.org
For additional commands, e-mail: dev-help@tomcat.apache.org