[El-errata] ELSA-2014-1038 Low: Oracle Linux 6 tomcat6 security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Mon Aug 11 13:00:01 PDT 2014


Oracle Linux Security Advisory ELSA-2014-1038

https://rhn.redhat.com/errata/RHSA-2014-1038.html

The following updated rpms for Oracle Linux 6 have been uploaded to the 
Unbreakable Linux Network:

i386:
tomcat6-6.0.24-78.el6_5.noarch.rpm
tomcat6-admin-webapps-6.0.24-78.el6_5.noarch.rpm
tomcat6-docs-webapp-6.0.24-78.el6_5.noarch.rpm
tomcat6-el-2.1-api-6.0.24-78.el6_5.noarch.rpm
tomcat6-javadoc-6.0.24-78.el6_5.noarch.rpm
tomcat6-jsp-2.1-api-6.0.24-78.el6_5.noarch.rpm
tomcat6-lib-6.0.24-78.el6_5.noarch.rpm
tomcat6-servlet-2.5-api-6.0.24-78.el6_5.noarch.rpm
tomcat6-webapps-6.0.24-78.el6_5.noarch.rpm

x86_64:
tomcat6-6.0.24-78.el6_5.noarch.rpm
tomcat6-admin-webapps-6.0.24-78.el6_5.noarch.rpm
tomcat6-docs-webapp-6.0.24-78.el6_5.noarch.rpm
tomcat6-el-2.1-api-6.0.24-78.el6_5.noarch.rpm
tomcat6-javadoc-6.0.24-78.el6_5.noarch.rpm
tomcat6-jsp-2.1-api-6.0.24-78.el6_5.noarch.rpm
tomcat6-lib-6.0.24-78.el6_5.noarch.rpm
tomcat6-servlet-2.5-api-6.0.24-78.el6_5.noarch.rpm
tomcat6-webapps-6.0.24-78.el6_5.noarch.rpm


SRPMS:
http://oss.oracle.com/ol6/SRPMS-updates/tomcat6-6.0.24-78.el6_5.src.rpm



Description of changes:

[0:6.0.24-78]
- Related: CVE-2013-4590  - remove xml schema names javaee_5,
- javaee_web_services_1_2, and javaee_web_services_1_2_client
- from descriptor.DigesterFactory initialization. These
- schema definitions are not relevant to 6.0.24 as the version
- of their spec did not exist at the time.

[0:6.0.24-77]
- Resolves: CVE-2014-0227

[0:6.0.24-76]
- Related: CVE-2013-4590 incrementing release. added
- excludearch to the spec file for ppc and ppc64. building
- on ppc produces empty javadoc files.

[0:6.0.24-74]
- Related: CVE-2013-4590 incrementing release

[0:6.0.24-73]
- Resolves: CVE-2013-4590
- Resolves: CVE-2014-0119





More information about the El-errata mailing list