Author: markt Revision: 892815 Modified property: svn:log Modified: svn:log at Fri Jan 29 15:03:24 2010 ------------------------------------------------------------------------------ --- svn:log (original) +++ svn:log Fri Jan 29 15:03:24 2010 @@ -4,3 +4,5 @@ - improved validation of WAR file names - make sure error messages match the action - the return from File.getCanonicalPath() may or may not return a final separator for directories + +This fixes CVE-2009-2693, CVE-2009-2901 & CVE-2009-2902
--------------------------------------------------------------------- To unsubscribe, e-mail: dev-unsubscr...@tomcat.apache.org For additional commands, e-mail: dev-h...@tomcat.apache.org