Re: [VOTE] Release Apache Tomcat 7.0.7

2011-02-04 Thread Mark Thomas
On 03/02/2011 13:32, Mark Thomas wrote: > The proposed Apache Tomcat 7.0.7 release is now available for voting. > > It can be obtained from: > http://people.apache.org/~markt/dev/tomcat-7/v7.0.7/ > The svn tag is: > http://svn.apache.org/repos/asf/tomcat/tc7.0.x/tags/TOMCAT_7_0_7/ > > The propose

Re: [VOTE] Release Apache Tomcat 7.0.7

2011-02-04 Thread Mark Thomas
On 04/02/2011 09:24, Mark Thomas wrote: > On 03/02/2011 13:32, Mark Thomas wrote: >> The proposed Apache Tomcat 7.0.7 release is now available for voting. >> >> It can be obtained from: >> http://people.apache.org/~markt/dev/tomcat-7/v7.0.7/ >> The svn tag is: >> http://svn.apache.org/repos/asf/tom

svn commit: r1067127 - /tomcat/trunk/webapps/docs/changelog.xml

2011-02-04 Thread markt
Author: markt Date: Fri Feb 4 10:02:38 2011 New Revision: 1067127 URL: http://svn.apache.org/viewvc?rev=1067127&view=rev Log: Update changelog Modified: tomcat/trunk/webapps/docs/changelog.xml Modified: tomcat/trunk/webapps/docs/changelog.xml URL: http://svn.apache.org/viewvc/tomcat/trunk/

svn commit: r1067134 - in /tomcat/trunk: java/org/apache/catalina/core/ApplicationContextFacade.java webapps/docs/changelog.xml

2011-02-04 Thread markt
Author: markt Date: Fri Feb 4 10:30:36 2011 New Revision: 1067134 URL: http://svn.apache.org/viewvc?rev=1067134&view=rev Log: Fix https://issues.apache.org/bugzilla/show_bug.cgi?id=50709 Make ApplicationContextFacade non-final to enable extension. Modified: tomcat/trunk/java/org/apache/catal

DO NOT REPLY [Bug 50709] Make class org.apache.catalina.core.ApplicationContextFacade non-final

2011-02-04 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=50709 Mark Thomas changed: What|Removed |Added Status|NEW |RESOLVED Resolution|

svn commit: r1067139 - /tomcat/trunk/java/org/apache/tomcat/util/http/Parameters.java

2011-02-04 Thread markt
Author: markt Date: Fri Feb 4 10:38:09 2011 New Revision: 1067139 URL: http://svn.apache.org/viewvc?rev=1067139&view=rev Log: Follow up to r1067039 Modified: tomcat/trunk/java/org/apache/tomcat/util/http/Parameters.java Modified: tomcat/trunk/java/org/apache/tomcat/util/http/Parameters.java

svn commit: r1067147 - in /tomcat/trunk: java/org/apache/catalina/security/SecurityClassLoad.java webapps/docs/changelog.xml

2011-02-04 Thread markt
Author: markt Date: Fri Feb 4 11:07:18 2011 New Revision: 1067147 URL: http://svn.apache.org/viewvc?rev=1067147&view=rev Log: Fix security exception when running under a SecurityManager Modified: tomcat/trunk/java/org/apache/catalina/security/SecurityClassLoad.java tomcat/trunk/webapps/d

svn commit: r1067151 - /tomcat/trunk/java/org/apache/coyote/ajp/AjpProcessor.java

2011-02-04 Thread mturk
Author: mturk Date: Fri Feb 4 11:16:14 2011 New Revision: 1067151 URL: http://svn.apache.org/viewvc?rev=1067151&view=rev Log: Do not send flush packet if explicit is false Modified: tomcat/trunk/java/org/apache/coyote/ajp/AjpProcessor.java Modified: tomcat/trunk/java/org/apache/coyote/ajp/A

DO NOT REPLY [Bug 50709] Make class org.apache.catalina.core.ApplicationContextFacade non-final

2011-02-04 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=50709 --- Comment #2 from gvage...@gmail.com 2011-02-04 07:03:39 EST --- Thanks a lot. George -- Configure bugmail: https://issues.apache.org/bugzilla/userprefs.cgi?tab=email --- You are receiving this mail because: --- You are the assig

svn commit: r1067161 - in /tomcat/trunk: java/org/apache/coyote/ajp/AjpAprProtocol.java webapps/docs/changelog.xml

2011-02-04 Thread markt
Author: markt Date: Fri Feb 4 12:18:00 2011 New Revision: 1067161 URL: http://svn.apache.org/viewvc?rev=1067161&view=rev Log: Fix hanging Servlet 3 asynchronous requests when using the APR based AJP connector. Modified: tomcat/trunk/java/org/apache/coyote/ajp/AjpAprProtocol.java tomcat/

svn commit: r1067169 - in /tomcat/tc7.0.x/tags/TOMCAT_7_0_8: ./ build.properties.default modules/

2011-02-04 Thread markt
Author: markt Date: Fri Feb 4 12:45:08 2011 New Revision: 1067169 URL: http://svn.apache.org/viewvc?rev=1067169&view=rev Log: Tag 7.0.8 Added: tomcat/tc7.0.x/tags/TOMCAT_7_0_8/ (props changed) - copied from r1067167, tomcat/trunk/ Removed: tomcat/tc7.0.x/tags/TOMCAT_7_0_8/modules

svn commit: r1067170 - /tomcat/trunk/build.properties.default

2011-02-04 Thread markt
Author: markt Date: Fri Feb 4 12:46:06 2011 New Revision: 1067170 URL: http://svn.apache.org/viewvc?rev=1067170&view=rev Log: Bump version Modified: tomcat/trunk/build.properties.default Modified: tomcat/trunk/build.properties.default URL: http://svn.apache.org/viewvc/tomcat/trunk/build.pr

[RESULT] [VOTE] Release Apache Tomcat 7.0.7

2011-02-04 Thread Mark Thomas
On 03/02/2011 13:32, Mark Thomas wrote: > The proposed Apache Tomcat 7.0.7 release is now available for voting. > > It can be obtained from: > http://people.apache.org/~markt/dev/tomcat-7/v7.0.7/ > The svn tag is: > http://svn.apache.org/repos/asf/tomcat/tc7.0.x/tags/TOMCAT_7_0_7/ > > The propose

When using jsp mapped as servlet in web.xml, cyrillic characters are not allowed in web.xml

2011-02-04 Thread Huksley
I am using web.xml in it simplest, incomlete form (note that making it 100% Servlet API 3.0 compliant does not help) Тестовый web.xml TestJSPMount /test.jsp TestJSPMount /test.html During startup, tomcat throws exception: 04/02/2011 16:07:39 S - - StandardContext.loadOnStartup: Servlet /t

Re: When using jsp mapped as servlet in web.xml, cyrillic characters are not allowed in web.xml

2011-02-04 Thread Mark Thomas
On 04/02/2011 13:18, Huksley wrote: > During startup, tomcat throws exception: > 04/02/2011 16:07:39 S - - StandardContext.loadOnStartup: Servlet > /testcyrwebxml threw load() exception Please create a Bugzilla entry for this. Cheers, Mark ---

[VOTE] Release Apache Tomcat 7.0.8

2011-02-04 Thread Mark Thomas
The proposed Apache Tomcat 7.0.8 release is now available for voting. It can be obtained from: http://people.apache.org/~markt/dev/tomcat-7/v7.0.8/ The svn tag is: http://svn.apache.org/repos/asf/tomcat/tc7.0.x/tags/TOMCAT_7_0_8/ The proposed 7.0.8 release is: [ ] Broken - do not release [ ] Alp

DO NOT REPLY [Bug 50720] New: When using jsp mapped as servlet in web.xml, cyrillic characters are not allowed in web.xml

2011-02-04 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=50720 Summary: When using jsp mapped as servlet in web.xml, cyrillic characters are not allowed in web.xml Product: Tomcat 7 Version: 7.0.6 Platform: PC Status: NEW

DO NOT REPLY [Bug 50720] When using jsp mapped as servlet in web.xml, cyrillic characters are not allowed in web.xml

2011-02-04 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=50720 Konstantin Kolinko changed: What|Removed |Added OS/Version||All --- Comment #1 from Konst

[Tomcat Wiki] Update of "PoweredBy" by Ultimate Fighter

2011-02-04 Thread Apache Wiki
Dear Wiki user, You have subscribed to a wiki page or wiki category on "Tomcat Wiki" for change notification. The "PoweredBy" page has been changed by Ultimate Fighter. http://wiki.apache.org/tomcat/PoweredBy?action=diff&rev1=311&rev2=312 -- [[

DO NOT REPLY [Bug 49525] IE8: Unabled to store data in HttpSession (root context)

2011-02-04 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=49525 Bmeist changed: What|Removed |Added Status|RESOLVED|REOPENED Version|7.0.0

DO NOT REPLY [Bug 49525] IE8: Unabled to store data in HttpSession (root context)

2011-02-04 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=49525 Bmeist changed: What|Removed |Added CC||br...@tigernet.com -- Configure bugmail:

DO NOT REPLY [Bug 49525] IE8: Unabled to store data in HttpSession (root context)

2011-02-04 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=49525 Mark Thomas changed: What|Removed |Added Status|REOPENED|RESOLVED Resolution|

DO NOT REPLY [Bug 50700] Context parameters are being overridden with parameters from the web application deployment descriptor

2011-02-04 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=50700 Oliver Doepner changed: What|Removed |Added OS/Version||All --- Comment #1 from Oliver Do

Re: [VOTE] Release Apache Tomcat 7.0.8

2011-02-04 Thread Mark Thomas
On 04/02/2011 13:52, Mark Thomas wrote: > The proposed Apache Tomcat 7.0.8 release is now available for voting. > > It can be obtained from: > http://people.apache.org/~markt/dev/tomcat-7/v7.0.8/ > The svn tag is: > http://svn.apache.org/repos/asf/tomcat/tc7.0.x/tags/TOMCAT_7_0_8/ > > The propose

Re: [VOTE] Release build 6.0.32

2011-02-04 Thread Filip Hanik - Dev Lists
On 02/02/2011 12:37 PM, jean-frederic clere wrote: [X] Stable - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apache.org For additional commands, e-mail: dev-h...@tomcat.apache.org

Re: [VOTE] Release Apache Tomcat 7.0.8

2011-02-04 Thread Mladen Turk
On 02/04/2011 02:52 PM, Mark Thomas wrote: The proposed Apache Tomcat 7.0.8 release is now available for voting. [X] Stable - go ahead and release as 7.0.8 Stable Regards -- ^TM - To unsubscribe, e-mail: dev-unsubscr...@tom

Re: [VOTE] Release Apache Tomcat 7.0.8

2011-02-04 Thread Konstantin Kolinko
2011/2/4 Mark Thomas : > The proposed Apache Tomcat 7.0.8 release is now available for voting. > > It can be obtained from: > http://people.apache.org/~markt/dev/tomcat-7/v7.0.8/ > The svn tag is: > http://svn.apache.org/repos/asf/tomcat/tc7.0.x/tags/TOMCAT_7_0_8/ > > The proposed 7.0.8 release is:

Re: RemoteIpValve advices

2011-02-04 Thread Jim Riggs
On Jan 31, 2011, at 3:57 PM, Mark Thomas wrote: > On 31/01/2011 21:54, Henri Gomez wrote: >>> Not necessarily. The closest immediate proxy is the last entry in that >>> list. You might not trust all of the machines in that proxy chain to >>> provide >>> legitimate IP details. >> >> In my case,

svn commit: r1067289 - /tomcat/tc5.5.x/trunk/STATUS.txt

2011-02-04 Thread pero
Author: pero Date: Fri Feb 4 21:17:44 2011 New Revision: 1067289 URL: http://svn.apache.org/viewvc?rev=1067289&view=rev Log: add my vote Modified: tomcat/tc5.5.x/trunk/STATUS.txt Modified: tomcat/tc5.5.x/trunk/STATUS.txt URL: http://svn.apache.org/viewvc/tomcat/tc5.5.x/trunk/STATUS.txt?rev

Re: [VOTE] Release Apache Tomcat 7.0.8

2011-02-04 Thread Peter Rossbach
+1 Peter Am 04.02.2011 um 14:52 schrieb Mark Thomas: > The proposed Apache Tomcat 7.0.8 release is now available for voting. > > It can be obtained from: > http://people.apache.org/~markt/dev/tomcat-7/v7.0.8/ > The svn tag is: > http://svn.apache.org/repos/asf/tomcat/tc7.0.x/tags/TOMCAT_7_0_8/ >

Re: [VOTE] Release Apache Tomcat 7.0.8

2011-02-04 Thread Mark Thomas
On 04/02/2011 13:52, Mark Thomas wrote: > The proposed Apache Tomcat 7.0.8 release is now available for voting. > > It can be obtained from: > http://people.apache.org/~markt/dev/tomcat-7/v7.0.8/ > The svn tag is: > http://svn.apache.org/repos/asf/tomcat/tc7.0.x/tags/TOMCAT_7_0_8/ > > The propose

svn commit: r1067369 [2/2] - in /tomcat/site/trunk: docs/ xdocs/

2011-02-04 Thread markt
Modified: tomcat/site/trunk/xdocs/whichversion.xml URL: http://svn.apache.org/viewvc/tomcat/site/trunk/xdocs/whichversion.xml?rev=1067369&r1=1067368&r2=1067369&view=diff == --- tomcat/site/trunk/xdocs/whichversion.xml (ori

svn commit: r1067370 - in /tomcat/site/trunk: docs/index.html xdocs/index.xml

2011-02-04 Thread markt
Author: markt Date: Sat Feb 5 01:21:44 2011 New Revision: 1067370 URL: http://svn.apache.org/viewvc?rev=1067370&view=rev Log: Add 7.0.8 to front page Modified: tomcat/site/trunk/docs/index.html tomcat/site/trunk/xdocs/index.xml Modified: tomcat/site/trunk/docs/index.html URL: http://sv

DO NOT REPLY [Bug 50721] New: RequestUtil.URLDecode() throws IllegalArgumentException for URLs with %xx-Code as last character

2011-02-04 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=50721 Summary: RequestUtil.URLDecode() throws IllegalArgumentException for URLs with %xx-Code as last character Product: Tomcat 7 Version: trunk Platform: All

[ANN] Apache Tomcat 7.0.8 released

2011-02-04 Thread Mark Thomas
The Apache Tomcat team announces the immediate availability of Apache Tomcat 7.0.8 Apache Tomcat 7.0.8 is primarily a security and bug fix release with numerous fixes compared to 7.0.6. Please refer to the change log for the list of changes: http://tomcat.apache.org/tomcat-7.0-doc/changelog.html

[SECURITY] CVE-2010-3718 Apache Tomcat Local bypass of security manger file permissions

2011-02-04 Thread Mark Thomas
CVE-2010-3718 Apache Tomcat Local bypass of security manger file permissions Severity: Low Vendor: The Apache Software Foundation Versions Affected: - Tomcat 7.0.0 to 7.0.3 - Tomcat 6.0.0 to 6.0.? - Tomcat 5.5.0 to 5.5.? - Earlier, unsupported versions may also be affected Description: When run

[SECURITY] CVE-2010-3718 Apache Tomcat Local bypass of security manger file permissions

2011-02-04 Thread Mark Thomas
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 CVE-2010-3718 Apache Tomcat Local bypass of security manger file permissions Severity: Low Vendor: The Apache Software Foundation Versions Affected: - - Tomcat 7.0.0 to 7.0.3 - - Tomcat 6.0.0 to 6.0.? - - Tomcat 5.5.0 to 5.5.? - - Earlier, unsupport

[SECURITY] Oracle JVM bug causes denial of service in Apache Tomcat

2011-02-04 Thread Mark Thomas
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 The original report is [1]. Tomcat is affected when accessing a form based security constrained page or any page that calls javax.servlet.ServletRequest.getLocale() or javax.servlet.ServletRequest.getLocales(). Work-arounds have been implemented in

[SECURITY] CVE-2011-0534 Apache Tomcat DoS vulnerability

2011-02-04 Thread Mark Thomas
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 CVE-2011-0534 Apache Tomcat DoS vulnerability Severity: Important Vendor: The Apache Software Foundation Versions Affected: - - Tomcat 7.0.0 to 7.0.6 - - Tomcat 6.0.0 to 6.0.30 Description: Tomcat did not enforce the maxHttpHeaderSize limit while p

[SECURITY] CVE-2011-0013 Apache Tomcat Manager XSS vulnerability

2011-02-04 Thread Mark Thomas
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 CVE-2011-0013 Apache Tomcat Manager XSS vulnerability Severity: Low Vendor: The Apache Software Foundation Versions Affected: - - Tomcat 7.0.0 to 7.0.5 - - Tomcat 6.0.0 to 6.0.29 - - Tomcat 5.5.0 to 5.5.31 - - Earlier, unsupported versions may also