On 22/11/2010 19:52, Konstantin Kolinko wrote: > 2010/11/22 Mark Thomas <ma...@apache.org>: >> -----BEGIN PGP SIGNED MESSAGE----- >> Hash: SHA1 >> >> CVE-2010-4172: Apache Tomcat Manager application XSS vulnerability >> > > (...) > > FYI: > The patches included in the announcement are hardly readable, because > the mailing software replaced '-' with '- -' and the start of lines, > and wrapped long lines as well.
That is as a result of the e-mail being digitally signed. E-mail clients capable of processing the signature will remove the double '- -' and unwrap any wrapped lines. The mirrors have now picked up the patches so I'll post a quick follow up to the users and dev list with links to the patches. Mark --------------------------------------------------------------------- To unsubscribe, e-mail: dev-unsubscr...@tomcat.apache.org For additional commands, e-mail: dev-h...@tomcat.apache.org