Re: [SECURITY INQUIRY] CVE-2025-52520: Regarding "Unlikely Configurations of Multipart Upload" that are Affected

2025-07-24 Thread Mark Thomas
On 25/07/2025 03:42, 加治屋 一輝 wrote: Specifically, the following point is unclear to us: The advisory mentions "unlikely configurations of multipart upload." Could you please specify what types of configurations are considered "unlikely" and would therefore be affected by this vulnerability

[SECURITY INQUIRY] CVE-2025-52520: Regarding "Unlikely Configurations of Multipart Upload" that are Affected

2025-07-24 Thread 加治屋 一輝
My name is kazu. I am writing to seek clarification regarding a recently published security vulnerability that affects Apache Tomcat. I am writing to seek clarification regarding a recently published security vulnerability that affects Apache Tomcat. We have reviewed the official security adviso

RE: Classloading has a long delay after idle period

2025-07-24 Thread Daniel Sheridan
>On 23/07/2025 15:36, Daniel Sheridan wrote: > > > >> Hi Rainer, >> >>> it might be a search for non-existing classes or resources >> The JARs are being scanned for specific classes during the delay, but they >> are classes that should already be loaded in, which is the confusing bit. >> >> I've

Re: Tomcat 10.1.13 - z17 Compatibility

2025-07-24 Thread Dimitris Soumis
On Thu, Jul 24, 2025 at 3:05 PM Brian Proffitt wrote: > Forwarded from apa...@apache.org. If you choose to respond, please > respond to the original sender. > > -- Forwarded message - > From: MATHEW THOMAS > Date: Thu, Jul 24, 2025 at 6:22 AM > Subject: Tomcat 10.1.13 - z17 Compa

Fwd: Tomcat 10.1.13 - z17 Compatibility

2025-07-24 Thread Brian Proffitt
Forwarded from apa...@apache.org. If you choose to respond, please respond to the original sender. -- Forwarded message - From: MATHEW THOMAS Date: Thu, Jul 24, 2025 at 6:22 AM Subject: Tomcat 10.1.13 - z17 Compatibility To: apa...@apache.org Cc: Eghosa Imaghodor Hello, We