tomcat 보안 업데이트
업데이트 : 2016.03.24
이름 : tomcat-0:7.0.68-1.an2
벤더 : AnNyung Packaging Team
Tomcat is the servlet container that is used in the official Reference
Implementation for the Java Servlet and JavaServer Pages technologies.
The Java Servlet and JavaServer Pages specifications are developed by
Sun under the Java Community Process.
Tomcat is developed in an open and participatory environment and
released under the Apache Software License. Tomcat is intended to be
a collaboration of the best-of-breed developers from around the world.
We invite you to participate in this open development project.
- update 7.0.68
- security issues
. CVE-2015-5345 Directory disclosure
. CVE-2015-5351 CSRF token leak
. CVE-2016-0706 Security Manager bypass
. CVE-2016-0714 Security Manager bypass
. CVE-2016-0763 Security Manager bypass