[SECURITY] CVE-2022-42252 Apache Tomcat - Request Smuggling

2022-10-31 Thread Mark Thomas
CVE-2022-42252 Apache Tomcat - Request Smuggling Severity: Low Vendor: The Apache Software Foundation Versions Affected: Apache Tomcat 10.1.0-M1 to 10.1.0 Apache Tomcat 10.0.0-M1 to 10.0.26 Apache Tomcat 9.0.0-M1 to 9.0.67 Apache Tomcat 8.5.0 to 8.5.52 Description: If Tomcat was configured to

RE: Partial commit (Transaction rollback )

2022-10-31 Thread Mohan T
The same piece of code works in tomcat 8.5. with JDK 8 and Oracle DB 12C. -Original Message- From: Rob Sargent Sent: 31 October 2022 18:05 To: users@tomcat.apache.org Subject: Re: Partial commit (Transaction rollback ) RAMCO Security WARNING: This is an external email. Do not click

Re: Partial commit (Transaction rollback )

2022-10-31 Thread Rob Sargent
On 10/30/22 23:42, Mohan T wrote: Dear All, We are using the Tomcat with the following combination. We are facing partial commit (Transaction is not getting rolled back). App Server Apache tomcat server: apache-tomcat- 9.0.65.0 JDK version