system environment/daemons

tomcat-jsvc - Apache jsvc wrapper for Apache Tomcat as separate service

Website: http://tomcat.apache.org/
License: ASL 2.0
Vendor: Scientific Linux
Description:
Systemd service and wrapper scripts to start tomcat with jsvc,
which allows tomcat to perform some privileged operations
(e.g. bind to a port < 1024) and then switch identity to a non-privileged user.

Packages

tomcat-jsvc-7.0.69-11.el7_3.noarch [13 KiB] Changelog by Coty Sutherland (2017-03-28):
- Resolves: rhbz#1413591 CVE-2016-8745 tomcat: information disclosure due to incorrect Processor sharing
- Resolves: rhbz#1402662 CVE-2016-6816 tomcat: HTTP Request smuggling vulnerability due to permitting invalid character in HTTP requests
tomcat-jsvc-7.0.69-10.el7.noarch [12 KiB] Changelog by Coty Sutherland (2016-08-25):
- Related: rhbz#1368122
tomcat-jsvc-7.0.54-8.el7_2.noarch [10 KiB] Changelog by Coty Sutherland (2016-08-25):
- Resolves: rhbz#1368121
tomcat-jsvc-7.0.54-2.el7_1.noarch [10 KiB] Changelog by David Knox (2015-03-24):
- Resovles: CVE-2014-0227
tomcat-jsvc-7.0.54-1.el7.noarch [10 KiB] Changelog by David Knox (2014-09-17):
- Resolves: rhbz#1141372 - Remove systemv artifacts. Add new systemd 
- artifacts. Rebase on 7.0.54.
tomcat-jsvc-7.0.42-8.el7_0.noarch [12 KiB] Changelog by David Knox (2014-07-22):
- Resolves: CVE-2013-4590
- Resolves: CVE-2014-0119
tomcat-jsvc-7.0.42-6.el7_0.noarch [12 KiB] Changelog by David Knox (2014-06-11):
- Resolves: CVE-2014-0099 Fix possible overflow when parsing
- long values from byte array
- Resolves: CVE-2014-0096 Information discloser process XSLT
- files not subject to same constraint running under
- java security manager
- Resolves: CVE-2014-0075 Avoid overflow in ChunkedInputFilter.
tomcat-jsvc-7.0.42-5.el7_0.noarch [11 KiB] Changelog by David Knox (2014-04-16):
- Related: CVE-2013-4286
- Related: CVE-2013-4322
- Related: CVE-2014-0050
- revisit patches for above.

Listing created by Repoview-0.6.6-1.el6