RE: Tomcat9 - Ubuntu 20.04 x64

2022-11-21 Thread Thomas Ward
alaxy Original message From: Brad Turnbough Date: 11/21/22 16:15 (GMT-05:00) To: Robie Basak Cc: ubuntu-devel-discuss@lists.ubuntu.com Subject: RE: Tomcat9 - Ubuntu 20.04 x64 This is exactly what I was looking for. The vulnerability was addressed in v9.0.31 of the package. Nessus

RE: Tomcat9 - Ubuntu 20.04 x64

2022-11-21 Thread Brad Turnbough
: Re: Tomcat9 - Ubuntu 20.04 x64 Hi, On Mon, Nov 14, 2022 at 04:00:22PM +, Brad Turnbough wrote: > Ran a nessus scan against the box and am being told that verion 9.0.31 is > vulnerable to a DoS attack and that I need to upgrade to >=9.0.36. Problem > is, that version isn't

Re: Tomcat9 - Ubuntu 20.04 x64

2022-11-15 Thread Ralf Mardorf
On Mon, 2022-11-14 at 16:00 +, Brad Turnbough wrote: > Can someone look into getting this package updated in order to resolve > this vulnerability? Hi, why should a release model distro, especially a long term support release model distro, update to another software version? This doesn't make

Re: Tomcat9 - Ubuntu 20.04 x64

2022-11-15 Thread Robie Basak
Hi, On Mon, Nov 14, 2022 at 04:00:22PM +, Brad Turnbough wrote: > Ran a nessus scan against the box and am being told that verion 9.0.31 is > vulnerable to a DoS attack and that I need to upgrade to >=9.0.36. Problem > is, that version isn't available in the Ubuntu repos. > > Can someone l

Tomcat9 - Ubuntu 20.04 x64

2022-11-15 Thread Brad Turnbough
Running a fully patched install of Ubuntu 20.04 x64. Tomcat 9 installed from the normal Ubuntu repos.The version available and installed is 9.0.31. Ran a nessus scan against the box and am being told that verion 9.0.31 is vulnerable to a DoS attack and that I need to upgrade to >=9.0.36. P