Re: [Tomcat Wiki] Update of "LocalBadContent" by ChuckCaldarale

2013-04-25 Thread sebb
Is all of that URL spammy? I specifically included most of the path because I thought there might be valid content elsewhere on the site. On 25 April 2013 13:46, Apache Wiki wrote: > Dear Wiki user, > > You have subscribed to a wiki page or wiki category on "Tomcat Wiki" for > change notificat

Re: svn commit: r1479953 - in /tomcat/tc7.0.x/trunk: ./ java/org/apache/tomcat/util/http/parser/HttpParser.java test/org/apache/tomcat/util/http/parser/TestMediaType.java webapps/docs/changelog.xml

2013-05-08 Thread sebb
On 7 May 2013 16:54, wrote: > Author: markt > Date: Tue May 7 15:54:36 2013 > New Revision: 1479953 > > URL: http://svn.apache.org/r1479953 > Log: > Fix https://issues.apache.org/bugzilla/show_bug.cgi?id=54703 > Be tolerant of applications that pass CR or LF in setHeader() values. > Fix some whi

Re: OT: How do I subscribe to the Tomcat Dev/User lists with my @apache.org address?

2013-05-14 Thread sebb
On 15 May 2013 00:37, Christopher Schultz wrote: > Nick, > > On 5/14/13 6:35 PM, Nick Williams wrote: >> I recently became a committer on the Logging project and thus I now have an >> @apache.org address. Since it's a forwarding address, I'm having it forward >> to my Google Apps email address (

Re: Jar scanning, SCI scanning, fragment scanning

2013-06-14 Thread sebb
On 14 June 2013 17:35, Christopher Schultz wrote: > Mark, > > On 6/14/13 12:21 PM, Mark Thomas wrote: >> On 14/06/2013 16:57, Christopher Schultz wrote: >>> Mark, >>> >>> On 6/14/13 3:16 AM, Mark Thomas wrote: On 14/06/2013 03:31, Christopher Schultz wrote: > It might be nice if this

Re: CVE-2013-1571, VU#225657

2013-06-19 Thread sebb
On 19 June 2013 09:15, Mark Thomas wrote: > On 19/06/2013 00:42, Nick Williams wrote: >> >> Oracle has announced a Javadoc vulnerability (CVE-2013-1571 [1], >> VU#225657 [2]) whereby Javadoc generated with Java 5, Java 6, or Java >> 7 < 7u25 is vulnerable to a frame injection attack. Oracle has >>

Re: CVE-2013-1571, VU#225657

2013-06-19 Thread sebb
On 19 June 2013 13:03, Nick Williams wrote: > > On Jun 19, 2013, at 3:15 AM, Mark Thomas wrote: > >> On 19/06/2013 00:42, Nick Williams wrote: >>> Oracle has announced a Javadoc vulnerability (CVE-2013-1571 [1], >>> VU#225657 [2]) whereby Javadoc generated with Java 5, Java 6, or Java >>> 7 < 7u25

Re: CVE-2013-1571, VU#225657

2013-06-19 Thread sebb
On 19 June 2013 13:12, sebb wrote: > On 19 June 2013 13:03, Nick Williams wrote: >> >> On Jun 19, 2013, at 3:15 AM, Mark Thomas wrote: >> >>> On 19/06/2013 00:42, Nick Williams wrote: >>>> Oracle has announced a Javadoc vulnerability (CVE-2013-157

Re: CVE-2013-1571, VU#225657

2013-06-19 Thread sebb
On 19 June 2013 14:12, Konstantin Kolinko wrote: > 2013/6/19 sebb : >> On 19 June 2013 13:12, sebb wrote: >>> On 19 June 2013 13:03, Nick Williams wrote: >>>> >>>> On Jun 19, 2013, at 3:15 AM, Mark Thomas wrote: >>>> >>>>> On

Re: CVE-2013-1571, VU#225657

2013-06-19 Thread sebb
On 19 June 2013 15:36, Mark Thomas wrote: > On 19/06/2013 15:12, sebb wrote: >> >> On 19 June 2013 14:12, Konstantin Kolinko wrote: >>> >>> 2013/6/19 sebb : >>>> >>>> On 19 June 2013 13:12, sebb wrote: >>>>> >>>>

Re: CVE-2013-1571, VU#225657

2013-06-20 Thread sebb
On 20 June 2013 14:16, Christopher Schultz wrote: > Sebb, > > On 6/19/13 4:26 AM, sebb wrote: >> On 19 June 2013 09:15, Mark Thomas wrote: >>> On 19/06/2013 00:42, Nick Williams wrote: >>>> >>>> Oracle has announced a Javadoc vulnerability (CVE-20

Re: CVE-2013-1571, VU#225657

2013-06-20 Thread sebb
On 20 June 2013 16:33, Christopher Schultz wrote: > Sebb, > > On 6/20/13 9:31 AM, sebb wrote: >> On 20 June 2013 14:16, Christopher Schultz >> wrote: >>> Sebb, >>> >>> On 6/19/13 4:26 AM, sebb wrote: >>>> On 19 June 2013 09:15, Mark T

Re: svn commit: r1495875 - in /tomcat/tc7.0.x/trunk: ./ build.xml webapps/docs/changelog.xml

2013-06-23 Thread sebb
On 23 June 2013 20:24, wrote: > Author: markt > Date: Sun Jun 23 19:24:21 2013 > New Revision: 1495875 > > URL: http://svn.apache.org/r1495875 > Log: > Fix https://issues.apache.org/bugzilla/show_bug.cgi?id=55119 > Ensure that the build process produces Javadoc that is not vulnerable to > CVE-20

Re: Various shell-scripting idioms in bin/daemon.sh

2013-07-17 Thread sebb
On 17 July 2013 12:59, Mladen Turk wrote: > On 07/16/2013 11:42 PM, Christopher Schultz wrote: >> >> All, >> >> While doing the trivial fix for >> https://issues.apache.org/bugzilla/show_bug.cgi?id=55268, I noticed a >> few idioms being used in bin/daemon.sh that struck me as odd. For example: >>

Re: Various shell-scripting idioms in bin/daemon.sh

2013-07-17 Thread sebb
On 17 July 2013 15:50, Mladen Turk wrote: > On 07/17/2013 04:01 PM, sebb wrote: >> >> May I suggest a short comment is added to the script to document why >> -z and -n are not used? >> Someone else reading the script in the future is going to wonder the >> same-

Re: Various shell-scripting idioms in bin/daemon.sh

2013-07-17 Thread sebb
Regardless, please consider documenting the script to explain why it does not use -n/-z if that is necessary to avoid bugs. On 17 July 2013 20:26, Christopher Schultz wrote: > Mladen, > > On 7/17/13 1:07 PM, Mladen Turk wrote: >> On 07/17/2013 06:05 PM, sebb wrote: >

Re: Various shell-scripting idioms in bin/daemon.sh

2013-07-18 Thread sebb
On 18 July 2013 10:13, Rainer Jung wrote: > On 18.07.2013 06:04, Mladen Turk wrote: >> On 07/17/2013 11:59 PM, sebb wrote: >>> Regardless, please consider documenting the script to explain why it >>> does not use -n/-z if that is necessary to avoid bugs. >&g

Re: [VOTE] Release Apache Taglibs 1.2.0-RC1

2013-08-07 Thread sebb
On 2 August 2013 20:32, Jeremy Boynes wrote: > A proposed release candidate Apache Taglibs 1.2.0-RC1 is now available for > voting. > > This is release candidate for an implementation of JSTL 1.2 and can be > obtained from the staging repo at: > https://repository.apache.org/content/repositori

Re: Need guidance for writing unit tests for 55317

2013-08-21 Thread sebb
On 21 August 2013 14:48, Christopher Schultz wrote: > Nick, > > On 8/20/13 8:24 PM, Nick Williams wrote: >> I ran in to a roadblock with this idea. Part of the byte code of a >> class includes the fully-qualified class name. If I create a class, >> say UnweavedClass, and replace its byte code in m

Re: Need guidance for writing unit tests for 55317

2013-08-21 Thread sebb
On 21 August 2013 20:21, Christopher Schultz wrote: > Sebb, > > On 8/21/13 1:46 PM, sebb wrote: >> On 21 August 2013 14:48, Christopher Schultz >> wrote: >>> Nick, >>> >>> On 8/20/13 8:24 PM, Nick Williams wrote: >>>> I ran in to a roa

Re: [ANN] Apache Tomcat Connectors 1.2.43 released

2018-03-07 Thread sebb
What is the project about? Why should I be interested in it? [rhetorical questions] The Announce emails are sent to people not on the developer or user lists. Most will have no idea what the project is about. So the e-mails should contain at least brief details of what the product does, and some

Re: svn commit: r1817993 - /gump/metadata/project/tomcat-trunk.xml

2017-12-15 Thread sebb
On 14 December 2017 at 15:20, Mark Thomas wrote: > On 14/12/17 13:18, Konstantin Kolinko wrote: >> Hi, Mark! >> >> To dev@tomcat, cc: general@gump. >> >> >> The result of this change is that Gump building Tomcat downloads >> tar.gz for Commons-Daemon from mirrors. > > Drat. That wasn't the intenti

Re: [ANN] Apache Tomcat 7.0.84 released

2018-01-25 Thread sebb
Might be an idea to include a link to the main Tomcat page somewhere in the announce? On 25 January 2018 at 08:44, Violeta Georgieva wrote: > The Apache Tomcat team announces the immediate availability of Apache > Tomcat 7.0.84. > > Apache Tomcat is an open source software implementation of the J

Re: [SECURITY] CVE-2015-5345 Apache Tomcat Directory disclosure

2016-02-22 Thread sebb
On 22 February 2016 at 11:23, Mark Thomas wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA256 > > CVE-2015-5345 Apache Tomcat Directory disclosure > > Severity: Low > > Vendor: The Apache Software Foundation > > Versions Affected: > - - Apache Tomcat 6.0.0 to 6.0.44 > - - Apache Tomcat 7.0.

[jira] [Commented] (MTOMCAT-87) Make http protocol configurable for the embedded Tomcat

2011-09-11 Thread Sebb (JIRA)
[ https://issues.apache.org/jira/browse/MTOMCAT-87?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13102280#comment-13102280 ] Sebb commented on MTOMCAT-87: - @Adrien C The patch was attached without granting the

[jira] [Created] (MTOMCAT-226) Wasted work in AbstractCatalinaMojo#getManager()

2013-06-11 Thread Sebb (JIRA)
Sebb created MTOMCAT-226: Summary: Wasted work in AbstractCatalinaMojo#getManager() Key: MTOMCAT-226 URL: https://issues.apache.org/jira/browse/MTOMCAT-226 Project: Apache Tomcat Maven Plugin Issue

Fwd: svn commit: r1877430 - /comdev/projects.apache.org/trunk/data/projects.xml

2020-05-06 Thread sebb AT ASF
Please update project.xml with the new location. -- Forwarded message - From: Date: Wed, 6 May 2020 at 12:39 Subject: svn commit: r1877430 - /comdev/projects.apache.org/trunk/data/projects.xml To: Author: sebb Date: Wed May 6 11:39:14 2020 New Revision: 1877430 URL: http

<    1   2   3   4   5