Re: Tomcat 6 security vulnerabilities in Wheezy

2016-03-24 Thread Moritz Mühlenhoff
On Wed, Mar 16, 2016 at 02:21:06PM +0100, Markus Koschany wrote: > Am 14.03.2016 um 23:06 schrieb Moritz Mühlenhoff: > > On Sat, Feb 27, 2016 at 11:45:45PM +0100, Markus Koschany wrote: > >> Hi, > >> > >> as you know Tomcat 6 is affected by new security vulnerabilities that > >> are fixed in versio

Re: Tomcat 6 security vulnerabilities in Wheezy

2016-03-18 Thread Markus Koschany
Am 14.03.2016 um 23:06 schrieb Moritz Mühlenhoff: > On Sat, Feb 27, 2016 at 11:45:45PM +0100, Markus Koschany wrote: >> Hi, >> >> as you know Tomcat 6 is affected by new security vulnerabilities that >> are fixed in version 6.0.45. Do you want me to replace the last version >> I sent to you regardi

Re: Tomcat 6 security vulnerabilities in Wheezy

2016-03-14 Thread Moritz Mühlenhoff
On Sat, Feb 27, 2016 at 11:45:45PM +0100, Markus Koschany wrote: > Hi, > > as you know Tomcat 6 is affected by new security vulnerabilities that > are fixed in version 6.0.45. Do you want me to replace the last version > I sent to you regarding Wheezy with this one or shall I upload version > 6.0.

Re: Tomcat 6 security vulnerabilities in Wheezy

2016-02-27 Thread Markus Koschany
Hi, as you know Tomcat 6 is affected by new security vulnerabilities that are fixed in version 6.0.45. Do you want me to replace the last version I sent to you regarding Wheezy with this one or shall I upload version 6.0.41 instead, which is more tested, and prepare another upload afterwards. I wo

Re: Tomcat 6 security vulnerabilities in Wheezy

2016-02-21 Thread Markus Koschany
Am 18.02.2016 um 20:46 schrieb Moritz Mühlenhoff: > On Thu, Feb 18, 2016 at 06:24:17PM +0100, Markus Koschany wrote: >> Am 18.02.2016 um 18:10 schrieb Emmanuel Bourg: >>> Le 18/02/2016 14:45, Markus Koschany a écrit : >>> According to [1] Tomcat 6 in Wheezy is still affected by a couple of >>>

Re: Tomcat 6 security vulnerabilities in Wheezy

2016-02-18 Thread Moritz Mühlenhoff
On Thu, Feb 18, 2016 at 06:24:17PM +0100, Markus Koschany wrote: > Am 18.02.2016 um 18:10 schrieb Emmanuel Bourg: > > Le 18/02/2016 14:45, Markus Koschany a écrit : > > > >> According to [1] Tomcat 6 in Wheezy is still affected by a couple of > >> security vulnerabilities that were already fixed i

Re: Tomcat 6 security vulnerabilities in Wheezy

2016-02-18 Thread Markus Koschany
Am 18.02.2016 um 18:10 schrieb Emmanuel Bourg: > Le 18/02/2016 14:45, Markus Koschany a écrit : > >> According to [1] Tomcat 6 in Wheezy is still affected by a couple of >> security vulnerabilities that were already fixed in Squeeze-LTS and >> Jessie. Would it be sensible to apply the same changes

Re: Tomcat 6 security vulnerabilities in Wheezy

2016-02-18 Thread Emmanuel Bourg
Le 18/02/2016 14:45, Markus Koschany a écrit : > According to [1] Tomcat 6 in Wheezy is still affected by a couple of > security vulnerabilities that were already fixed in Squeeze-LTS and > Jessie. Would it be sensible to apply the same changes (backporting the > 6.0.41 release to Wheezy too) or a

Re: Tomcat 6 security vulnerabilities in Wheezy

2016-02-18 Thread tony mancill
On 02/18/2016 05:45 AM, Markus Koschany wrote: > Hi, > > According to [1] Tomcat 6 in Wheezy is still affected by a couple of > security vulnerabilities that were already fixed in Squeeze-LTS and > Jessie. Would it be sensible to apply the same changes (backporting the > 6.0.41 release to Wheezy t

Tomcat 6 security vulnerabilities in Wheezy

2016-02-18 Thread Markus Koschany
Hi, According to [1] Tomcat 6 in Wheezy is still affected by a couple of security vulnerabilities that were already fixed in Squeeze-LTS and Jessie. Would it be sensible to apply the same changes (backporting the 6.0.41 release to Wheezy too) or are there any reasons why this has not been done bef