On 27/03/2011 23:50, Konstantin Kolinko wrote:
> In
> http://svn.apache.org/viewvc?view=revision&revision=906443
> 
> the description of CVE-2009-2901 was updated to say that it only
> affects Windows platforms.
> 
> There might be reasons why deploy may fail on unixes as well (e.g.
> full disk). The patch to ExpandWar.expand() handles that case as well.

The title is wrong there. It should be:
Low: Insecure partial deploy after failed *un*deploy

That does only affect Windows.

I'll get the title fixed.

Mark

---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscr...@tomcat.apache.org
For additional commands, e-mail: dev-h...@tomcat.apache.org

Reply via email to