Otiose Cognitions

September 2002
Sun Mon Tue Wed Thu Fri Sat
1 2 3 4 5 6 7
8 9 10 11 12 13 14
15 16 17 18 19 20 21
22 23 24 25 26 27 28
29 30          
Aug   Oct

 Wednesday, September 25, 2002
Tomcat Vulnerability
  Time to upgrade to Tomcat 4.0.5 or Tomcat 4.1.12 as earlier versions have a security vulnerability:
Tomcat 4.0.4 and 4.1.10 (probably all other earlier versions also) are vulnerable to source code exposure by using the default servlet org.apache.catalina.servlets.DefaultServlet... [Security Focus]
A followup message reports that the Tomcat 3.2.x series isn't vulnerable. As I write this the Jakarta website appears to be down...
9:37:30 AM