-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 28 May 2019 23:30:50 +0530 Source: tomcat7 Binary: tomcat7-common tomcat7 tomcat7-user libtomcat7-java libservlet3.0-java libservlet3.0-java-doc tomcat7-admin tomcat7-examples tomcat7-docs Architecture: source all Version: 7.0.56-3+really7.0.94-1 Distribution: jessie-security Urgency: medium Maintainer: Debian Java Maintainers <pkg-java-maintainers@lists.alioth.debian.org> Changed-By: Abhijith PA <abhijith@debian.org> Description: libservlet3.0-java - Servlet 3.0 and JSP 2.2 Java API classes libservlet3.0-java-doc - Servlet 3.0 and JSP 2.2 Java API documentation libtomcat7-java - Servlet and JSP engine -- core libraries tomcat7 - Servlet and JSP engine tomcat7-admin - Servlet and JSP engine -- admin web applications tomcat7-common - Servlet and JSP engine -- common files tomcat7-docs - Servlet and JSP engine -- documentation tomcat7-examples - Servlet and JSP engine -- example web applications tomcat7-user - Servlet and JSP engine -- tools to create user instances Changes: tomcat7 (7.0.56-3+really7.0.94-1) jessie-security; urgency=medium . * Non-maintainer upload by the Debian LTS team * New upstream version 7.0.94. * Fix CVE-2019-0221: XSS in SSI printenv * Refresh following patches, - 0013-dont-look-for-build-properties-in-user-home.patch - 0004-split-deploy-webapps-target-from-deploy-target.patch - 0010-debianize-build-xml.patch - 0019-add-distribution-to-error-page.patch - 0026-add-asm-to-test-classpath.patch - 0017-use-jdbc-pool-default.patch - 0027-TestFileHandlerNonRotatable.patch - tomcat-7.0.91-build-failure.patch Checksums-Sha1: 818e47832d9bf6eb07bf70dcb45c42e021e99f30 2904 tomcat7_7.0.56-3+really7.0.94-1.dsc 13d0bed3bcaf29323259e77a8b9977a105137648 4966331 tomcat7_7.0.56-3+really7.0.94.orig.tar.gz 01995af8a30c2300b4193ed527867fa739f2946d 52748 tomcat7_7.0.56-3+really7.0.94-1.debian.tar.xz e6ae101bfde1c6b246b3d77ec1dcb821487cc19b 297926 tomcat7-common_7.0.56-3+really7.0.94-1_all.deb f6a242f3fac851848202ce6428ffb672612e7b4c 55616 tomcat7_7.0.56-3+really7.0.94-1_all.deb 1f8a02c9b1198c138c6f972225126a7edb053dfe 43014 tomcat7-user_7.0.56-3+really7.0.94-1_all.deb d75d0e4026a4f7cc5dfe3d353ecfdf907801ab9d 3846364 libtomcat7-java_7.0.56-3+really7.0.94-1_all.deb 537e56b63fe3a46dbf56322f0dfbc8d44acfab4e 318186 libservlet3.0-java_7.0.56-3+really7.0.94-1_all.deb f4dd981b3d59def450d58e56cd1e6f0ee9dd67f0 209374 libservlet3.0-java-doc_7.0.56-3+really7.0.94-1_all.deb 3316f2a95079c1a4fe9cc0299e95f20d626853e8 39262 tomcat7-admin_7.0.56-3+really7.0.94-1_all.deb eb8572669573de78d11512d099bd351cab5fda95 201238 tomcat7-examples_7.0.56-3+really7.0.94-1_all.deb 5a76414d416d841330a68eab39591be3cd8ac326 694232 tomcat7-docs_7.0.56-3+really7.0.94-1_all.deb Checksums-Sha256: e7c4fdca3ee97ed56d8b8a103b4fbebbeeaf6d0b4fe7cce03ff0ee3a2ac1c411 2904 tomcat7_7.0.56-3+really7.0.94-1.dsc 7277d282acb6811306e53f73f17f4fab2a8b79e591c71ea7c1ab06654bf29bb2 4966331 tomcat7_7.0.56-3+really7.0.94.orig.tar.gz 8f59983cc4b3538acc1c264481046983fb86f79bed41adfd5341e4ab1bbfa603 52748 tomcat7_7.0.56-3+really7.0.94-1.debian.tar.xz 838d96c2041cf71f73f2684f7ea60bdffd114ffe1778241896ea4ce0071c9c4e 297926 tomcat7-common_7.0.56-3+really7.0.94-1_all.deb 55ba24d47729f124561a12e3ddf19c182db22be378d7f9c0bc319a4293ccba83 55616 tomcat7_7.0.56-3+really7.0.94-1_all.deb 4d71c848db84462749b5d41cd401cc19fd3aedf3a1d985209ae4862fa2498db3 43014 tomcat7-user_7.0.56-3+really7.0.94-1_all.deb 580324782bdf1801cf10222c122a530351b677a7558292227eb5684329a0922d 3846364 libtomcat7-java_7.0.56-3+really7.0.94-1_all.deb 479cd4a0116f8bbc3a1a1f82d4fc2ce1c6992f4f09112b8b46659e0c79f6b775 318186 libservlet3.0-java_7.0.56-3+really7.0.94-1_all.deb f194b34341f5aa2712b59742a5dcbeaa7ebb90c32fe308e258ac2be43935b0b7 209374 libservlet3.0-java-doc_7.0.56-3+really7.0.94-1_all.deb f1ef6bd1043474f618b473c72319394d08deb80e894d16f9eeda45a89604bcba 39262 tomcat7-admin_7.0.56-3+really7.0.94-1_all.deb efecf18306cfae11e110efdb906ec7cc4b592dded32bab452e757c470efcd23a 201238 tomcat7-examples_7.0.56-3+really7.0.94-1_all.deb 5498cff2ffb168b2f2f54d4484428309e91c770d9f41a69e1c027b9d7c623d29 694232 tomcat7-docs_7.0.56-3+really7.0.94-1_all.deb Files: 1ece40d235fea149f627b90ac0585e7d 2904 java optional tomcat7_7.0.56-3+really7.0.94-1.dsc ab9ce1e8190fbfed2b4843c2ca69106c 4966331 java optional tomcat7_7.0.56-3+really7.0.94.orig.tar.gz cda0a466d8095d9c8e98dd222c855f3e 52748 java optional tomcat7_7.0.56-3+really7.0.94-1.debian.tar.xz ac6051bf64ef1f1be30d5243ec21e54f 297926 java optional tomcat7-common_7.0.56-3+really7.0.94-1_all.deb 4fa0f4aa3ccd97ead869150390c6e500 55616 java optional tomcat7_7.0.56-3+really7.0.94-1_all.deb 438e411c70924e60cde17632b389a73d 43014 java optional tomcat7-user_7.0.56-3+really7.0.94-1_all.deb 332587d58f640a269d1ee8de42fb3cf0 3846364 java optional libtomcat7-java_7.0.56-3+really7.0.94-1_all.deb 6554d3cce6b580d34497f925e60ba5c6 318186 java optional libservlet3.0-java_7.0.56-3+really7.0.94-1_all.deb c8a51904e41bd8cdadd652a6fad263c3 209374 doc optional libservlet3.0-java-doc_7.0.56-3+really7.0.94-1_all.deb 0fe81fe9f35927e018eac7c0a4206e72 39262 java optional tomcat7-admin_7.0.56-3+really7.0.94-1_all.deb 474296928d1d9ce100c71d1250d16dc7 201238 java optional tomcat7-examples_7.0.56-3+really7.0.94-1_all.deb 064d11935eb265319d44284434520869 694232 doc optional tomcat7-docs_7.0.56-3+really7.0.94-1_all.deb -----BEGIN PGP SIGNATURE----- iQJIBAEBCgAyFiEE7xPqJqaY/zX9fJAuhj1N8u2cKO8FAlzvibAUHGFiaGlqaXRo QGRlYmlhbi5vcmcACgkQhj1N8u2cKO+dBhAAlxVS4UGat252VbTXwMi/Fsi+zzm1 HUGFUw3WYAUxQpgM8q2958di9fOEn4e9LKjn2z/OPYVUZswIuFIgNGADRLwYNxpC z6V9L+7aOezw4nRT97HFc2P8opjVc6Huls6lMXwX+S/NqLukqMWGNZlL0REbHPSF WO9rKG+rbOLaYWH07KaBa11+7LXR69/kaSE2akZqXApD/kCWoqhV3obNa9EwoFbW l4G5osNN9d/ooTKzUEZDPVoT31tH72p0J+O5BaktpcrsDieKZY6pijCoZOQLzjM+ OGIitGfWsTNvmgGMaQ5yaMZ2DvXDYuRritDRUydRfqXd0lZVuWxpDBrPNDsmAfkd ys+m0jsq/PlS6LsndBsQgsNmHdFk2gSmM7ndjoqmSFGxDBIxbc1GMfkinpHRPsnR Eh9jUODk6ZGCPqMK6XGFAjdcFZhKfwU5ZG3tv23++QAYJlh40gbcsE5NQGuM7pd1 wJY6HRk+lQoqLrkvkWgyBnvDDJ0/hcc74Le1fJNC44AFq3dTNCc7MZcyg2iL6Xmj AF7WT/06K2hCq7ug7K6ffAroBFsjvUBdXbPEyO4NKGM+GcSekQoyz+gFZqoZ327y QzowfWr1RiL8utvicMIWtBwHbfBjOvxF27YF9sPgcgObroS4cjxn2XxrXPZ8Q9UP foJJMR6dWc1j/Ho= =wCWe -----END PGP SIGNATURE-----