| Summary: | www-servers/tomcat: Imcomplete fix Remote Code Execution Vulneratiliby (CVE-2017-12617) | ||
|---|---|---|---|
| Product: | Gentoo Security | Reporter: | GLSAMaker/CVETool Bot <glsamaker> |
| Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
| Status: | RESOLVED OBSOLETE | ||
| Severity: | normal | CC: | java |
| Priority: | Normal | ||
| Version: | unspecified | ||
| Hardware: | All | ||
| OS: | Linux | ||
| URL: | https://lists.apache.org/thread.html/3fd341a604c4e9eab39e7eaabbbac39c30101a022acc11dd09d7ebcb@%3Cannounce.tomcat.apache.org%3E | ||
| Whiteboard: | C2 [ebuild cve] | ||
| Package list: | Runtime testing required: | --- | |
|
Description
GLSAMaker/CVETool Bot
2017-11-01 06:10:22 UTC
@Maintainers could you confirm if we are affected by this CVE? Please call for stabilization when ready if that's the case. Thank you i cleaned tomcat so that it contains only the latest releases: $ PORTDIR=/usr/src/gentoo.git/ equery meta tomcat * www-servers/tomcat [gentoo] Maintainer: java@gentoo.org (Java) Upstream: None specified Homepage: http://tomcat.apache.org/ Location: /usr/src/gentoo.git/www-servers/tomcat Keywords: 7.0.82:7: amd64 ~amd64-linux ~ppc64 ~x86 ~x86-linux ~x86-solaris Keywords: 8.0.47:8: amd64 ~amd64-linux ~x86 ~x86-fbsd ~x86-linux ~x86-solaris Keywords: 8.5.23:8.5: amd64 ~amd64-linux ~x86 ~x86-fbsd ~x86-linux ~x86-solaris Keywords: 9.0.1_beta:9: ~amd64 ~amd64-linux ~x86 ~x86-fbsd ~x86-linux ~x86-solaris License: Apache-2.0 we agreed that x86 will be dropped to ~x86 as its usage is declining |