Bug 585370
Summary: | CVE-2009-2901 CVE-2009-2902 CVE-2009-2693 CVE-2010-1157 tomcat: multiple vulnerabilities [fedora-all] | ||
---|---|---|---|
Product: | [Fedora] Fedora | Reporter: | Vincent Danen <vdanen> |
Component: | tomcat5 | Assignee: | Devrim Gündüz <devrim> |
Status: | CLOSED UPSTREAM | QA Contact: | Fedora Extras Quality Assurance <extras-qa> |
Severity: | low | Docs Contact: | |
Priority: | low | ||
Version: | 14 | CC: | devrim, dwalluck |
Target Milestone: | --- | Keywords: | Security, SecurityTracking |
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | Release Note | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2011-06-15 22:43:26 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | |||
Bug Blocks: | 559738, 559742, 559761, 585331 |
Description
Vincent Danen
2010-04-23 19:57:16 UTC
Adding CVE-2009-2901, CVE-2009-2902, CVE-2009-2693 to this tracking bug. Fedora 13 is unfixed, as is Fedora 14. However, we have closed the top-level bug as CLOSED/WONTFIX and our only real resolution here is to use the appropriate upstream release (5.5.30 in this case). Fedora 15 has 5.5.31 so is fixed, which is good enough for me. |