Tomcat(7.0.35) vulnerability or issues

2013-02-25 Thread dkumar
Dear All,

We are upgrading the tomcat from version 6.0.18   to 7.0.35
Operating System Version : HP-UX 11.31

Please inform us if there are any known issues or any vulnerability on 
latest tomcat version of 7.0.35. 

Thanks and Regards
Deepak Kumar
Disclaimer and confidentiality clause -
 This message and any attachments relating to official business of CCIL OR ANY 
OF IT'S SUBSIDIARIES is proprietary to CCIL and intended for the original 
addressee only.
The message may contain information that is confidential and subject to legal 
privilege. 
Any views expressed in this message are those of the individual sender. 
If you have received this message in error, please notify the original sender 
immediately and destroy the message and copies thereof and any attachments 
contained in it .
 If you are not the intended recipient of this message, you are hereby notified 
that you must not disseminate, copy, use, distribute, or take any action in 
connection therewith. 
 CCIL cannot ensure that the integrity of this communication has been 
maintained nor that it is free of errors, viruses, interception and/or 
interference. 
CCIL is not liable whatsoever for loss or damage resulting from the opening of 
this message and/or attachments and/or the use of the information contained in 
this message and/or attachments.

Re: Tomcat(7.0.35) vulnerability or issues

2013-02-25 Thread Ognjen Blagojevic

dkumar,

On 25.2.2013 10:02, dku...@ccilindia.co.in wrote:

We are upgrading the tomcat from version 6.0.18   to 7.0.35
Operating System Version : HP-UX 11.31

Please inform us if there are any known issues or any vulnerability on
latest tomcat version of 7.0.35.


1. Good you are upgrading, 6.0.18 is almost 5 years old.
2. Latest Apache Tomcat version is 7.0.37, not 7.0.35.
3. Vulnerabilities that might affect Tomcat, but can't be fixed in 
Tomcat are listed here:


  http://tomcat.apache.org/security-7.html#Not_a_vulnerability_in_Tomcat

4. Other that that, there are no other unaddessed known vulnerabilities 
in Tomcat 7.0.37, AFAIK.


-Ognjen

-
To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org
For additional commands, e-mail: users-h...@tomcat.apache.org