You are viewing a plain text version of this content. The canonical link for it is here.
Posted to users@tomcat.apache.org by "Kaggwa, John" <Jo...@whotels.com> on 2015/06/12 14:12:58 UTC

Apache Tomcat Multiple Vulnerabilities Prior To 7.0.50

Hello,

I would like some help with the issue listed below and how to configure it into my system.

Name
Apache Tomcat Multiple Vulnerabilities Prior To 7.0.50

Risk
4

Intrusive
No

Description
Multiple vulnerabilities are present in some versions of Apache Tomcat.

Observation
Apache Tomcat is an open source software implementation of the Java Servlet and JavaServer Pages technologies. Multiple vulnerabilities are present in some versions of Apache Tomcat. The flaws lie in multiple components. Successful exploitation could allow an attacker to obtain sensitive information or to cause denial of service.


All the best

JOHN KAGGWA
ASSISTANT IT MANAGER / W DOHA
P.O Box 19573 / West Bay / Doha / Qatar
T: 974-4453-5031 / F: 974-4453-5220 / M: 974-3017-7061 / E: John.Kaggwa@whotels.com

This electronic message transmission contains information from the Company that may be proprietary, confidential and/or privileged. The information is intended only for the use of the individual(s) or entity named above. If you are not the intended recipient, be aware that any disclosure, copying or distribution or use of the contents of this information is prohibited. If you have received this electronic transmission in error, please notify the sender immediately by replying to the address listed in the "From:" field.

---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@tomcat.apache.org
For additional commands, e-mail: users-help@tomcat.apache.org


Re: Apache Tomcat Multiple Vulnerabilities Prior To 7.0.50

Posted by Christopher Schultz <ch...@christopherschultz.net>.
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

John,

On 6/12/15 8:56 AM, Kaggwa, John wrote:
> What is the correct way of installing it, because I had downloaded 
> version "apache-tomcat-8.0.23-windows-x64"

Do you want to install Tomcat 7 (like the OP seems to want to do), or
do you want to install Tomcat 8?

If you are going from Tomcat 7 to Tomcat 8, there's always this guide:
http://tomcat.apache.org/migration-8.html

- -chris
-----BEGIN PGP SIGNATURE-----
Comment: GPGTools - http://gpgtools.org

iQIcBAEBCAAGBQJVewPJAAoJEBzwKT+lPKRY10cP/0V7dP3JPSlQ2JjNqlxzSoED
y3X4JLr1E4L6Mtb27WdvkuPwLCCPPLk2efxVpG9w6l+nHsjRW9aOqVzB6GsHzOJn
ZsRtkJxJQ146A9fwCDUkyogWzUdBF37lyEADK+swF3mUiAC/48GTC28ppzvfxDQ8
V2MmjYEq2T9ZBCIS4G1yNscUwn5WUbYU4lQFvdopGFX4+BMwOz0fzFeKXqa1U/i4
2Y+0OPeV7Xrhqmyvg+VgsTgZrx1tk1Za3c19cxS/TdTTtl75FCuG67y50QJTs8Ad
Ip9VIDYs2N74+YIyy6/UUgKqZFXaJb1Pc6dy99BlwCU/gEcvncPEXpkP8g85yIO2
LF5HdDYn+zx9DAWC5JMtQOHt0gzp4/n9/CNNZlU+HWt8lzzUVfwO07jP58qHYwFR
6DFB7IZ+WFMF+Hc+ktdftwdXnqaKmKAWNeIe+9mw9ljvnr7HGx49KYBHbdXrBBpZ
/grYyS8YmpRupPN2O/xRNcS9SAtIw1jGoUre3Pa9jQDoasSlxIhLqIre8OfPOwZP
pO9yWwPQMWj6sv2PCRPrYz4z+fy2mCs7hFb9qlAkIJyAJdcztztU4aiJd78YxI3D
agyYTLbdxLHkCvXzauB9vM6NDAHikSHP9+9VDF54dvqWp6iOyJcT0aq6HCIVPEmT
1m4yoW+eqYJrg0c4Dclo
=5zXg
-----END PGP SIGNATURE-----

---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@tomcat.apache.org
For additional commands, e-mail: users-help@tomcat.apache.org


RE: Apache Tomcat Multiple Vulnerabilities Prior To 7.0.50

Posted by "Kaggwa, John" <Jo...@whotels.com>.
What is the correct way of installing it, because I had downloaded version "apache-tomcat-8.0.23-windows-x64"

All the best

JOHN KAGGWA
ASSISTANT IT MANAGER / W DOHA

-----Original Message-----
From: Mark Thomas [mailto:markt@apache.org]
Sent: Friday, June 12, 2015 3:50 PM
To: Tomcat Users List
Subject: Re: Apache Tomcat Multiple Vulnerabilities Prior To 7.0.50

On 12/06/2015 13:12, Kaggwa, John wrote:
>
> Hello,
>
> I would like some help with the issue listed below and how to configure it into my system.

Upgrade to the latest stable 7.0.x release.

Mark


>
> Name
> Apache Tomcat Multiple Vulnerabilities Prior To 7.0.50
>
> Risk
> 4
>
> Intrusive
> No
>
> Description
> Multiple vulnerabilities are present in some versions of Apache Tomcat.
>
> Observation
> Apache Tomcat is an open source software implementation of the Java Servlet and JavaServer Pages technologies. Multiple vulnerabilities are present in some versions of Apache Tomcat. The flaws lie in multiple components. Successful exploitation could allow an attacker to obtain sensitive information or to cause denial of service.
>
>
> All the best
>
> JOHN KAGGWA
> ASSISTANT IT MANAGER / W DOHA
> P.O Box 19573 / West Bay / Doha / Qatar
> T: 974-4453-5031 / F: 974-4453-5220 / M: 974-3017-7061 / E: John.Kaggwa@whotels.com
>
> This electronic message transmission contains information from the Company that may be proprietary, confidential and/or privileged. The information is intended only for the use of the individual(s) or entity named above. If you are not the intended recipient, be aware that any disclosure, copying or distribution or use of the contents of this information is prohibited. If you have received this electronic transmission in error, please notify the sender immediately by replying to the address listed in the "From:" field.
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: users-unsubscribe@tomcat.apache.org
> For additional commands, e-mail: users-help@tomcat.apache.org
>


---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@tomcat.apache.org
For additional commands, e-mail: users-help@tomcat.apache.org

This electronic message transmission contains information from the Company that may be proprietary, confidential and/or privileged. The information is intended only for the use of the individual(s) or entity named above. If you are not the intended recipient, be aware that any disclosure, copying or distribution or use of the contents of this information is prohibited. If you have received this electronic transmission in error, please notify the sender immediately by replying to the address listed in the "From:" field.

---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@tomcat.apache.org
For additional commands, e-mail: users-help@tomcat.apache.org


Re: Apache Tomcat Multiple Vulnerabilities Prior To 7.0.50

Posted by Mark Thomas <ma...@apache.org>.
On 12/06/2015 13:12, Kaggwa, John wrote:
> 
> Hello,
> 
> I would like some help with the issue listed below and how to configure it into my system.

Upgrade to the latest stable 7.0.x release.

Mark


> 
> Name
> Apache Tomcat Multiple Vulnerabilities Prior To 7.0.50
> 
> Risk
> 4
> 
> Intrusive
> No
> 
> Description
> Multiple vulnerabilities are present in some versions of Apache Tomcat.
> 
> Observation
> Apache Tomcat is an open source software implementation of the Java Servlet and JavaServer Pages technologies. Multiple vulnerabilities are present in some versions of Apache Tomcat. The flaws lie in multiple components. Successful exploitation could allow an attacker to obtain sensitive information or to cause denial of service.
> 
> 
> All the best
> 
> JOHN KAGGWA
> ASSISTANT IT MANAGER / W DOHA
> P.O Box 19573 / West Bay / Doha / Qatar
> T: 974-4453-5031 / F: 974-4453-5220 / M: 974-3017-7061 / E: John.Kaggwa@whotels.com
> 
> This electronic message transmission contains information from the Company that may be proprietary, confidential and/or privileged. The information is intended only for the use of the individual(s) or entity named above. If you are not the intended recipient, be aware that any disclosure, copying or distribution or use of the contents of this information is prohibited. If you have received this electronic transmission in error, please notify the sender immediately by replying to the address listed in the "From:" field.
> 
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: users-unsubscribe@tomcat.apache.org
> For additional commands, e-mail: users-help@tomcat.apache.org
> 


---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@tomcat.apache.org
For additional commands, e-mail: users-help@tomcat.apache.org