-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Fri, 18 Dec 2015 12:42:53 +0100 Source: tomcat7 Binary: tomcat7-common tomcat7 tomcat7-user libtomcat7-java libservlet3.0-java libservlet3.0-java-doc tomcat7-admin tomcat7-examples tomcat7-docs Architecture: source all Version: 7.0.56-3+deb8u1 Distribution: jessie-security Urgency: medium Maintainer: Debian Java Maintainers <pkg-java-maintainers@lists.alioth.debian.org> Changed-By: Emmanuel Bourg <ebourg@apache.org> Description: libservlet3.0-java - Servlet 3.0 and JSP 2.2 Java API classes libservlet3.0-java-doc - Servlet 3.0 and JSP 2.2 Java API documentation libtomcat7-java - Servlet and JSP engine -- core libraries tomcat7 - Servlet and JSP engine tomcat7-admin - Servlet and JSP engine -- admin web applications tomcat7-common - Servlet and JSP engine -- common files tomcat7-docs - Servlet and JSP engine -- documentation tomcat7-examples - Servlet and JSP engine -- example web applications tomcat7-user - Servlet and JSP engine -- tools to create user instances Changes: tomcat7 (7.0.56-3+deb8u1) jessie-security; urgency=medium . * Fixed CVE-2014-7810: Malicious web applications could use expression language to bypass the protections of a Security Manager as expressions were evaluated within a privileged code section. Checksums-Sha1: fcef75e953c5e2919ffd1861dafb7f9cc714e096 2758 tomcat7_7.0.56-3+deb8u1.dsc 488b83f5e61ad6e16a0fb10a009f0df52ac56d88 2895176 tomcat7_7.0.56.orig.tar.xz b49c03a7f0e945a214bb587d29f389f429931d5c 70736 tomcat7_7.0.56-3+deb8u1.debian.tar.xz 6566ff8b552af6529ced624a0ccaf5bb8ca0cd19 61144 tomcat7-common_7.0.56-3+deb8u1_all.deb 064b98171ece0d7b77b5da149e0a038d19cbaee7 49916 tomcat7_7.0.56-3+deb8u1_all.deb e7640327813832829a4cf771b5dfdd4fc98f8701 37576 tomcat7-user_7.0.56-3+deb8u1_all.deb ebfef3438a707636cecc9f526fea45ebdaa5fd2b 3624314 libtomcat7-java_7.0.56-3+deb8u1_all.deb 5ce88ef1c5d329ba426ad84af1bbb017954e7766 313674 libservlet3.0-java_7.0.56-3+deb8u1_all.deb 1248b513621cdef533112f9938c6756c6a37a851 204190 libservlet3.0-java-doc_7.0.56-3+deb8u1_all.deb 4a8369c3ea21a4d080e6b793b7a2931bed326569 38530 tomcat7-admin_7.0.56-3+deb8u1_all.deb 22b3b5d4be68e03efb64286327868d041fd98325 196888 tomcat7-examples_7.0.56-3+deb8u1_all.deb d28c7263e777d7fc9d2e175873aee4fa9fc7a67e 602702 tomcat7-docs_7.0.56-3+deb8u1_all.deb Checksums-Sha256: 56b90fa6d484387383ca8f2ceefcf43629c4bf1534e47d292c10c9c4d17093c7 2758 tomcat7_7.0.56-3+deb8u1.dsc ca736f95cc5c04ea9a67e2ec5ded7c2c92a2ad167f5cd7b6110336ea3f8ccb4d 2895176 tomcat7_7.0.56.orig.tar.xz d22bfd39a84fb9efe589b2e5adb5b9fb136423232c8f607988424945923d2610 70736 tomcat7_7.0.56-3+deb8u1.debian.tar.xz 34ae70dfed095dacf4c0269490839aa772f086bd020f80d5856e1ca7e3018505 61144 tomcat7-common_7.0.56-3+deb8u1_all.deb 3aa97ace50a9341c303dcdae68bcd6bd5ac6b0bb08a023739bbbe3df680cedcc 49916 tomcat7_7.0.56-3+deb8u1_all.deb 06e0f3a8732c37809f70a9ce00245245f81a19342aebca952181cb133ba61063 37576 tomcat7-user_7.0.56-3+deb8u1_all.deb b7128addedff8d5720bfe0efa9ec8a891cdb20cc2eecbfcca128f59c820fa077 3624314 libtomcat7-java_7.0.56-3+deb8u1_all.deb dd3008d055d3f3eeff92a1ab0475d2e75836513490985e1508f357eb86e34621 313674 libservlet3.0-java_7.0.56-3+deb8u1_all.deb 839505e605880a09d890c8129574daace08b4ad502277d5bed775945d995684b 204190 libservlet3.0-java-doc_7.0.56-3+deb8u1_all.deb 1fb453b8eca7e8cc0077cfbecd01b0810744b4e7a3cf2ae5e7a9f5057b98b665 38530 tomcat7-admin_7.0.56-3+deb8u1_all.deb d2e601840770f0535dd66091e135604db6ea20baf4510ce50edf68b8b504c57a 196888 tomcat7-examples_7.0.56-3+deb8u1_all.deb dcc0b32eaac704bd4461d89b74b14b404a3196062b106c81b2170b3d8c95c41d 602702 tomcat7-docs_7.0.56-3+deb8u1_all.deb Files: a62783fb20cd0ac0ea57fb815149f731 2758 java optional tomcat7_7.0.56-3+deb8u1.dsc fda3bd52795239742f320b94c44159a1 2895176 java optional tomcat7_7.0.56.orig.tar.xz 19081ce7bc21849aed7c599f730c184a 70736 java optional tomcat7_7.0.56-3+deb8u1.debian.tar.xz 46eef10470e4ca34f399f02ffb8745d2 61144 java optional tomcat7-common_7.0.56-3+deb8u1_all.deb 2c2de3b994b7888cc39807929dca0336 49916 java optional tomcat7_7.0.56-3+deb8u1_all.deb ee0e185f2673a9f1347e7fa09b78b140 37576 java optional tomcat7-user_7.0.56-3+deb8u1_all.deb 88c7681678e236c8dc1609393994a694 3624314 java optional libtomcat7-java_7.0.56-3+deb8u1_all.deb a990ed119376f788a3353aa954ea781b 313674 java optional libservlet3.0-java_7.0.56-3+deb8u1_all.deb b9166fd4396fc4df859a107e8481831d 204190 doc optional libservlet3.0-java-doc_7.0.56-3+deb8u1_all.deb a4a44a2127d2d59f802c34f6735b1538 38530 java optional tomcat7-admin_7.0.56-3+deb8u1_all.deb 14158325ba730fcf7c083ec2c1313970 196888 java optional tomcat7-examples_7.0.56-3+deb8u1_all.deb f135481abacdef76a2002ca577c47d3f 602702 doc optional tomcat7-docs_7.0.56-3+deb8u1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBAgAGBQJWdC/8AAoJEPUTxBnkudCspL8P/2buiIMeDQGXIUWRGYs44GP+ CuezFDz+xZlaPX6a8H+fzj1DIwOCLLhW9acTVPeNrU6XwLwKC1tVqFZqja6Otrm0 +FDWztmTIkN/zDpfv0505O1p92tUsPWnPiuslBTGcBB74XDBDxzF54waYt3axzrm wOL2IOlgz9m2SVDk8celTv34VDR+2jFqeWuSDRJ/w2q6BNd0duKH656RxzF9Zxjy Sjc2FaqrBORVeTRdHgh5sGcqHFJFIC4vqqLqKFZSGhiTSfq5Db20K9leDnXNHW1P +a6zXyU6xqt51I2atuN/JBiVZZyoC9TvLhFLah2I+z78y/36Ei4in5RxuPIXctsj oglqZqE/s7ioH8Y2WmSJP4ytotHeWdnBi6U8S+GOVCpf4rQttEymcOhHsb8WYxv3 jLz7sbBJa2WQtiGrLltnFh3VH33zKUf3RiFSziy9Pb2lAbfFbg25VD7DsBaxcbT0 5AWIurmW5kw734BR59hY1y5sq8ncefkqj9tmQTKoBHOtExG6XZS35ocU80UQifmC TvDC8Ptq2USq93ys9nWRN6HZAwZGpTcsQs90pxkCvN/qmVhcywZBHKQCCU6iWqIa LspFpm++nPjVrzzVLL2gC3k5JhBdulAuzrqelBOc/BNrUhRRFpEPSECI2xpkrkh8 K+IFpt/0cyylCnQjF2l1 =ouH3 -----END PGP SIGNATURE-----