On 27/03/2011 23:50, Konstantin Kolinko wrote: > In > http://svn.apache.org/viewvc?view=revision&revision=906443 > > the description of CVE-2009-2901 was updated to say that it only > affects Windows platforms. > > There might be reasons why deploy may fail on unixes as well (e.g. > full disk). The patch to ExpandWar.expand() handles that case as well.
The title is wrong there. It should be: Low: Insecure partial deploy after failed *un*deploy That does only affect Windows. I'll get the title fixed. Mark --------------------------------------------------------------------- To unsubscribe, e-mail: dev-unsubscr...@tomcat.apache.org For additional commands, e-mail: dev-h...@tomcat.apache.org