From owner-freebsd-ports-bugs@FreeBSD.ORG Fri Mar 23 17:50:14 2007 Return-Path: X-Original-To: freebsd-ports-bugs@hub.freebsd.org Delivered-To: freebsd-ports-bugs@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 9053C16A479 for ; Fri, 23 Mar 2007 17:50:14 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [69.147.83.40]) by mx1.freebsd.org (Postfix) with ESMTP id 6C74213C4CE for ; Fri, 23 Mar 2007 17:50:14 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (gnats@localhost [127.0.0.1]) by freefall.freebsd.org (8.13.4/8.13.4) with ESMTP id l2NHoDok081597 for ; Fri, 23 Mar 2007 17:50:13 GMT (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.13.4/8.13.4/Submit) id l2NHoDHq081596; Fri, 23 Mar 2007 17:50:13 GMT (envelope-from gnats) Resent-Date: Fri, 23 Mar 2007 17:50:13 GMT Resent-Message-Id: <200703231750.l2NHoDHq081596@freefall.freebsd.org> Resent-From: FreeBSD-gnats-submit@FreeBSD.org (GNATS Filer) Resent-To: freebsd-ports-bugs@FreeBSD.org Resent-Reply-To: FreeBSD-gnats-submit@FreeBSD.org, Radim Kolar Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 5240216A406 for ; Fri, 23 Mar 2007 17:46:09 +0000 (UTC) (envelope-from hsn@sendmail.cz) Received: from smtp-out3.iol.cz (smtp-out3.iol.cz [194.228.2.91]) by mx1.freebsd.org (Postfix) with ESMTP id C9A0413C4C8 for ; Fri, 23 Mar 2007 17:46:08 +0000 (UTC) (envelope-from hsn@sendmail.cz) Received: from smtp-out3.iol.cz (smtp-out-3.iplanet.iol.cz [192.168.30.28]) by smtp-out3.iol.cz (Postfix) with ESMTP id 4BEFF191012 for ; Fri, 23 Mar 2007 18:03:23 +0100 (CET) Received: from sanatana.dharma (234.114.broadband5.iol.cz [88.100.114.234]) by smtp-out3.iol.cz (Postfix) with ESMTP id F2DD257D77 for ; Fri, 23 Mar 2007 18:03:22 +0100 (CET) Received: from hsn-sf@localhost by sanatana.dharma (Exim 4.66_0 FreeBSD) id 1HUnAd-000H94-SL ; Fri, 23 Mar 2007 18:03:19 +0100 Message-Id: Date: Fri, 23 Mar 2007 18:03:19 +0100 From: Radim Kolar Sender: "Radim Kolar SF.NET" To: FreeBSD-gnats-submit@FreeBSD.org X-Send-Pr-Version: 3.113 Cc: hsn-sf@sd.iol.cz Subject: ports/110725: [security dir travel fix] tomcat55 update to 5.5.23 X-BeenThere: freebsd-ports-bugs@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: Radim Kolar List-Id: Ports bug reports List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 23 Mar 2007 17:50:14 -0000 >Number: 110725 >Category: ports >Synopsis: [security dir travel fix] tomcat55 update to 5.5.23 >Confidential: no >Severity: non-critical >Priority: low >Responsible: freebsd-ports-bugs >State: open >Quarter: >Keywords: >Date-Required: >Class: update >Submitter-Id: current-users >Arrival-Date: Fri Mar 23 17:50:12 GMT 2007 >Closed-Date: >Last-Modified: >Originator: Radim Kolar >Release: FreeBSD 6.2-RELEASE i386 >Organization: >Environment: System: FreeBSD sanatana.dharma 6.2-RELEASE FreeBSD 6.2-RELEASE #1: Sun Jan 14 11:36:17 CET 2007 root@sanatana.dharma:/usr/obj/usr/src/sys/UP i386 >Description: fix security bug >How-To-Repeat: >Fix: diff -Naur /usr/ports/www/tomcat55/Makefile /home/hsn/hacked/tomcat55/Makefile --- /usr/ports/www/tomcat55/Makefile Wed Nov 1 13:06:01 2006 +++ /home/hsn/hacked/tomcat55/Makefile Fri Mar 23 17:57:17 2007 @@ -6,17 +6,18 @@ # PORTNAME= tomcat -PORTVERSION= 5.5.20 +PORTVERSION= 5.5.23 CATEGORIES= www java MASTER_SITES= ${MASTER_SITE_APACHE} MASTER_SITE_SUBDIR= tomcat/tomcat-5/v${PORTVERSION}/bin -DISTFILES= apache-tomcat-${PORTVERSION}.tar.gz +#DISTFILES= apache-tomcat-${PORTVERSION}.tar.gz +DISTNAME= apache-tomcat-${PORTVERSION} MAINTAINER= ports@FreeBSD.org COMMENT= Open-source Java web server by Apache, 5.5.x branch USE_JAVA= yes -JAVA_VERSION= 1.4+ +JAVA_VERSION= 1.5+ NO_BUILD= YES USE_RC_SUBR= tomcat55.sh diff -Naur /usr/ports/www/tomcat55/distinfo /home/hsn/hacked/tomcat55/distinfo --- /usr/ports/www/tomcat55/distinfo Wed Nov 1 13:06:01 2006 +++ /home/hsn/hacked/tomcat55/distinfo Fri Mar 23 17:10:43 2007 @@ -1,6 +1,3 @@ -SIZE (apache-tomcat-5.5.20.tar.gz) = 5949295 -MD5 (apache-tomcat-5.5.20.tar.gz) = 2efa171cddb9f85ed19ef6f21b2c7d31 -SHA256 (apache-tomcat-5.5.20.tar.gz) = 272be39f7414878ce5b5d27c7c2b812fe2c1e679bd04a5b89fb863a1a304c7fa -SIZE (apache-tomcat-5.5.20-compat.tar.gz) = 1624224 -MD5 (apache-tomcat-5.5.20-compat.tar.gz) = 9afe29117c5eca667d72bb847416153e -SHA256 (apache-tomcat-5.5.20-compat.tar.gz) = 9fc5003b3a54c90449a3010e72ccafed778427df976ef2121985ca270b088e13 +MD5 (apache-tomcat-5.5.23.tar.gz) = 7a4cc2e00c7d2c9d9c4437ede337f832 +SHA256 (apache-tomcat-5.5.23.tar.gz) = 2948a0d6da10ff3760d58a4c73857424cfcdf7ce267ca030d94efaad11b59f81 +SIZE (apache-tomcat-5.5.23.tar.gz) = 5977561 diff -Naur /usr/ports/www/tomcat55/pkg-plist /home/hsn/hacked/tomcat55/pkg-plist --- /usr/ports/www/tomcat55/pkg-plist Mon Jul 3 11:49:56 2006 +++ /home/hsn/hacked/tomcat55/pkg-plist Fri Mar 23 17:36:07 2007 @@ -64,7 +64,7 @@ %%T%%/server/lib/catalina-optional.jar %%T%%/server/lib/catalina-storeconfig.jar %%T%%/server/lib/catalina.jar -%%T%%/server/lib/commons-modeler.jar +%%T%%/server/lib/commons-modeler-2.0.jar %%T%%/server/lib/servlets-cgi.renametojar %%T%%/server/lib/servlets-default.jar %%T%%/server/lib/servlets-invoker.jar @@ -720,6 +720,7 @@ %%T%%/webapps/tomcat-docs/printer/ssi-howto.html %%T%%/webapps/tomcat-docs/printer/ssl-howto.html %%T%%/webapps/tomcat-docs/printer/status.html +%%T%%/webapps/tomcat-docs/printer/virtual-hosting-howto.html %%T%%/webapps/tomcat-docs/printer/windows-service-howto.html %%T%%/webapps/tomcat-docs/proxy-howto.html %%T%%/webapps/tomcat-docs/realm-howto.html @@ -831,6 +832,7 @@ %%T%%/webapps/tomcat-docs/ssi-howto.html %%T%%/webapps/tomcat-docs/ssl-howto.html %%T%%/webapps/tomcat-docs/status.html +%%T%%/webapps/tomcat-docs/virtual-hosting-howto.html %%T%%/webapps/tomcat-docs/windows-service-howto.html %%T%%/webapps/webdav/WEB-INF/web.xml %%T%%/webapps/webdav/index.html >Release-Note: >Audit-Trail: >Unformatted: