[El-errata] ELSA-2011-0335 Important: Oracle Linux 6 tomcat6 security and bug fix update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Wed Mar 9 22:00:30 PST 2011


Oracle Linux Security Advisory ELSA-2011-0335

https://rhn.redhat.com/errata/RHSA-2011-0335.html

The following updated rpms for Oracle Linux 6 have been uploaded to the 
Unbreakable Linux Network:

i386:
tomcat6-6.0.24-24.el6_0.noarch.rpm
tomcat6-admin-webapps-6.0.24-24.el6_0.noarch.rpm
tomcat6-docs-webapp-6.0.24-24.el6_0.noarch.rpm
tomcat6-el-2.1-api-6.0.24-24.el6_0.noarch.rpm
tomcat6-javadoc-6.0.24-24.el6_0.noarch.rpm
tomcat6-jsp-2.1-api-6.0.24-24.el6_0.noarch.rpm
tomcat6-lib-6.0.24-24.el6_0.noarch.rpm
tomcat6-log4j-6.0.24-24.el6_0.noarch.rpm
tomcat6-servlet-2.5-api-6.0.24-24.el6_0.noarch.rpm
tomcat6-webapps-6.0.24-24.el6_0.noarch.rpm

x86_64:
tomcat6-6.0.24-24.el6_0.noarch.rpm
tomcat6-admin-webapps-6.0.24-24.el6_0.noarch.rpm
tomcat6-docs-webapp-6.0.24-24.el6_0.noarch.rpm
tomcat6-el-2.1-api-6.0.24-24.el6_0.noarch.rpm
tomcat6-javadoc-6.0.24-24.el6_0.noarch.rpm
tomcat6-jsp-2.1-api-6.0.24-24.el6_0.noarch.rpm
tomcat6-lib-6.0.24-24.el6_0.noarch.rpm
tomcat6-log4j-6.0.24-24.el6_0.noarch.rpm
tomcat6-servlet-2.5-api-6.0.24-24.el6_0.noarch.rpm
tomcat6-webapps-6.0.24-24.el6_0.noarch.rpm


SRPMS:
http://oss.oracle.com/ol6/SRPMS-updates/tomcat6-6.0.24-24.el6_0.src.rpm


Description of changes:

[0:6.0.24-24]
- Resolves: rhbz#674601
- Removed wildcard in main %files that caused duplicate ownership
- of log4j.properties

[0:6.0.24-23]
- Resolves: rhbz#674601
- Reverse - tomcat user requires login shell
- Reverse - rhbz 611244 tomcat-juli missing symlink
- PM/QE decision to include only the security fixes. The rhbzs
- will be taken care of during the rebase to 6.0.33.
- Did not Reverse - rhbz 676922 - additionally instancs of tomcat are broken
- Too many users depend upon it.

[0:6.0.24-22]
- Resolves - tomcat user requires login shell

[0:6.0.24-21]
- Resolves: 676922 - additionally created instances of tomcat
- are broken

[0:6.0.24-20]
- Resolves: rbz# 676922
- Resolves: init script LSB compliance
- Resolves: multiple instances of tomcat.
- Resolves: tomcat-juli missing symlink

[0:6.0.24-18]
- Resolves directory permission problems

[0:6.0.24-17]
- Resolves: CVE-2011-0534 rhbz#674601

[0:6.0.24-16]
- Resolves rhbz#674601 JDK Double.parseDouble DoS





More information about the El-errata mailing list