You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@tomcat.apache.org by ma...@apache.org on 2020/07/09 10:55:09 UTC
[tomcat] branch 7.0.x updated: Fix BZ 64852. Avoid exception under
a security manager
This is an automated email from the ASF dual-hosted git repository.
markt pushed a commit to branch 7.0.x
in repository https://gitbox.apache.org/repos/asf/tomcat.git
The following commit(s) were added to refs/heads/7.0.x by this push:
new ca47405 Fix BZ 64852. Avoid exception under a security manager
ca47405 is described below
commit ca47405f3fb5f4039a473bf6b77206da251cb3c5
Author: Mark Thomas <ma...@apache.org>
AuthorDate: Thu Jul 9 11:50:39 2020 +0100
Fix BZ 64852. Avoid exception under a security manager
Patch provided by Johnathan Gilday
https://bz.apache.org/bugzilla/show_bug.cgi?id=64582
---
java/org/apache/catalina/security/SecurityClassLoad.java | 1 +
webapps/docs/changelog.xml | 9 +++++++++
2 files changed, 10 insertions(+)
diff --git a/java/org/apache/catalina/security/SecurityClassLoad.java b/java/org/apache/catalina/security/SecurityClassLoad.java
index 0ca8205..6a0d3f5 100644
--- a/java/org/apache/catalina/security/SecurityClassLoad.java
+++ b/java/org/apache/catalina/security/SecurityClassLoad.java
@@ -132,6 +132,7 @@ public final class SecurityClassLoad {
private static final void loadConnectorPackage(ClassLoader loader) throws Exception {
final String basePackage = "org.apache.catalina.connector.";
+ loader.loadClass(basePackage + "CoyoteOutputStream");
loader.loadClass(basePackage + "RequestFacade$GetAttributePrivilegedAction");
loader.loadClass(basePackage + "RequestFacade$GetParameterMapPrivilegedAction");
loader.loadClass(basePackage + "RequestFacade$GetRequestDispatcherPrivilegedAction");
diff --git a/webapps/docs/changelog.xml b/webapps/docs/changelog.xml
index c7ad12a..88cad2b 100644
--- a/webapps/docs/changelog.xml
+++ b/webapps/docs/changelog.xml
@@ -60,6 +60,15 @@
issues do not "pop up" wrt. others).
-->
<section name="Tomcat 7.0.106 (violetagg)" rtext="in development">
+ <subsection name="Catalina">
+ <changelog>
+ <fix>
+ <bug>64582</bug>: Pre-load the <code>CoyoteOutputStream</code> class to
+ prevent a potential exception when running under a security manager.
+ Patch provided by Johnathan Gilday. (markt)
+ </fix>
+ </changelog>
+ </subsection>
<subsection name="Coyote">
<changelog>
<fix>
---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscribe@tomcat.apache.org
For additional commands, e-mail: dev-help@tomcat.apache.org