Received: from mail.netbsd.org (mail.netbsd.org [149.20.53.66]) by www.NetBSD.org (Postfix) with ESMTP id 07CCF63B946 for ; Wed, 4 Apr 2012 11:34:22 +0000 (UTC) Received: by mail.netbsd.org (Postfix, from userid 605) id 513B314A293; Wed, 4 Apr 2012 11:34:34 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by mail.netbsd.org (Postfix) with ESMTP id 79E4C14A242 for ; Wed, 4 Apr 2012 11:34:29 +0000 (UTC) X-Virus-Scanned: amavisd-new at NetBSD.org Received: from mail.netbsd.org ([127.0.0.1]) by localhost (mail.NetBSD.org [127.0.0.1]) (amavisd-new, port 10025) with ESMTP id 7xbs2R0pn1e5 for ; Wed, 4 Apr 2012 11:34:28 +0000 (UTC) Received: from cvs.netbsd.org (cvs.NetBSD.org [IPv6:2001:4f8:3:7:2e0:81ff:fe30:95bd]) by mail.netbsd.org (Postfix) with ESMTP id B1E2314A228 for ; Wed, 4 Apr 2012 11:34:28 +0000 (UTC) Received: by cvs.netbsd.org (Postfix, from userid 500) id 65708175DD; Wed, 4 Apr 2012 11:34:28 +0000 (UTC) MIME-Version: 1.0 Content-Disposition: inline Content-Transfer-Encoding: 8bit Content-Type: text/plain; charset="US-ASCII" Date: Wed, 4 Apr 2012 11:34:28 +0000 From: "OBATA Akio" Subject: CVS commit: pkgsrc/www/apache-tomcat55 To: pkgsrc-changes@NetBSD.org Reply-To: obache@netbsd.org X-Mailer: log_accum Message-Id: <20120404113428.65708175DD@cvs.netbsd.org> Sender: pkgsrc-changes-owner@NetBSD.org List-Id: pkgsrc-changes.NetBSD.org Precedence: bulk Module Name: pkgsrc Committed By: obache Date: Wed Apr 4 11:34:27 UTC 2012 Modified Files: pkgsrc/www/apache-tomcat55: Makefile PLIST distinfo Log Message: Update apache-tomcat to 5.5.35. (fix CVE-2011-4858) Tomcat 5.5.35 (jim) Catalina * Make configuration issues for security related Valves and Filters result in the failure of the valve or filter rather than just a warning message. (markt) * Ensure changes to the configuration of the RemoteHostValve and the RemoteAddrValve via JMX are thread-safe. (markt) * In RequestFilterValve (RemoteAddrValve, RemoteHostValve): refactor value matching logic into separate method and expose this new method isAllowed through JMX. (kkolinko) * Improve performance of parameter processing for GET and POST requests. Also add an option to limit the maximum number of parameters processed per request. This defaults to 10000. Excessive parameters are ignored. Note that FailedRequestFilter can be used to reject the request if some parameters were ignored. (markt/kkolinko) * New filter FailedRequestFilter that will reject a request if there were errors during HTTP parameter parsing. (kkolinko) * 52384: Do not fail with parameter parsing when debug logging is enabled. (kkolinko, jim) * Do not flag extra '&' characters in parameters as parse errors. (kkolinko, jim) * Slightly improve performance of UDecoder.convert(). Align %2f handling between implementations. (kkolinko) * 52225: Fix ClassCastException when adding an alias for an existing host via JMX. (kkolinko) * Do not throw an IllegalArgumentException from a parseParameters() call when a chunked POST request is too large, but treat it like an IO error. (kkolinko) * Add SetCharacterEncodingFilter (similar to the one contained in the examples web application) to the org.apache.catalina.filters package so it is available for all web applications. (kkolinko) General * Update Eclipse compiler to 3.7 and switch to using ecj.jar. (markt) Coyote * Improve multi-byte character handling in all connectors. (rjung) Jasper * 52335: Only handle <\% and not \% as escaped in template text. (markt) Webapps * 52049: Improve setup instructions for running as a Windows service: correct information on how a JRE is identified and selected. (kkolinko) * 52172: Update Tomcat build instructions. Includes changes proposed by bmargulies. (kkolinko) * 52243: Improve windows service documentation to clarify how to include # and/or ; in the value of an environment variable that is passed to the service. (markt) Other * 52059: Ensure Windows registry keys are removed when using the un-install option of the Windows installer. (markt) To generate a diff of this commit: cvs rdiff -u -r1.19 -r1.20 pkgsrc/www/apache-tomcat55/Makefile cvs rdiff -u -r1.8 -r1.9 pkgsrc/www/apache-tomcat55/PLIST cvs rdiff -u -r1.9 -r1.10 pkgsrc/www/apache-tomcat55/distinfo Please note that diffs are not public domain; they are subject to the copyright notices on the relevant files.