Bug report for Tomcat 5 [2007/01/14]

2007-01-14 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

Bug report for Watchdog [2007/01/14]

2007-01-14 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

Bug report for Tomcat 4 [2007/01/14]

2007-01-14 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

Bug report for Tomcat 3 [2007/01/14]

2007-01-14 Thread bugzilla
+---+ | Bugzilla Bug ID | | +-+ | | Status: UNC=Unconfirmed NEW=New ASS=Assigned

Re: svn commit: r496022 - in /tomcat: container/tc5.5.x/webapps/docs/changelog.xml jasper/tc5.5.x/src/share/org/apache/jasper/servlet/JspServlet.java

2007-01-14 Thread Mark Thomas
Tim Funk wrote: > Sweet - I thought that was the case. [But wanted to make sure.] > > -Tim Better safe than sorry ;) Mark - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]

Re: svn commit: r496022 - in /tomcat: container/tc5.5.x/webapps/docs/changelog.xml jasper/tc5.5.x/src/share/org/apache/jasper/servlet/JspServlet.java

2007-01-14 Thread Tim Funk
Sweet - I thought that was the case. [But wanted to make sure.] -Tim Mark Thomas wrote: Tim Funk wrote: Is this screaming XSS attack? Since javadocs in getRequestURI() say ... "The web container does not decode this String" It would be if it wasn't for line 177 of o.a.c.valves.ErrorReportVa

DO NOT REPLY [Bug 39572] - fixes to use CompressionFilter in WebSphere app server

2007-01-14 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

svn commit: r496190 - in /tomcat: container/tc5.5.x/webapps/docs/ servletapi/servlet2.4-jsp2.0-tc5.x/jsr152/examples/WEB-INF/classes/compressionFilters/ servletapi/servlet2.4-jsp2.0-tc5.x/jsr154/examp

2007-01-14 Thread markt
Author: markt Date: Sun Jan 14 15:21:45 2007 New Revision: 496190 URL: http://svn.apache.org/viewvc?view=rev&rev=496190 Log: Fix bug 39572. Improvements to CompressionFilter provided by Eric Hedström. Also cleaned up unused imports and methods. Modified: tomcat/container/tc5.5.x/webapps/docs

DO NOT REPLY [Bug 40104] - Jasper picking up incorrect file in JspServletWrapper.java context dump

2007-01-14 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

svn commit: r496173 - /tomcat/container/tc5.5.x/webapps/docs/changelog.xml

2007-01-14 Thread markt
Author: markt Date: Sun Jan 14 14:48:05 2007 New Revision: 496173 URL: http://svn.apache.org/viewvc?view=rev&rev=496173 Log: Update changelog with bug number. Modified: tomcat/container/tc5.5.x/webapps/docs/changelog.xml Modified: tomcat/container/tc5.5.x/webapps/docs/changelog.xml URL: htt

DO NOT REPLY [Bug 40509] - Jasper strips off the host part of the file name

2007-01-14 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

DO NOT REPLY [Bug 41361] New: - Content lost when read by a slow client.

2007-01-14 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

DO NOT REPLY [Bug 39088] - StandardWrapper getRootCause() infinite loop

2007-01-14 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

svn commit: r496117 - in /tomcat/container/tc5.5.x: catalina/src/share/org/apache/catalina/core/StandardWrapper.java catalina/src/share/org/apache/catalina/valves/ErrorReportValve.java webapps/docs/ch

2007-01-14 Thread markt
Author: markt Date: Sun Jan 14 11:43:00 2007 New Revision: 496117 URL: http://svn.apache.org/viewvc?view=rev&rev=496117 Log: Fix bug 39088. prevent infinite loops when an exception is thrown the returns itself for getRootCause() Modified: tomcat/container/tc5.5.x/catalina/src/share/org/apac

Re: svn commit: r496022 - in /tomcat: container/tc5.5.x/webapps/docs/changelog.xml jasper/tc5.5.x/src/share/org/apache/jasper/servlet/JspServlet.java

2007-01-14 Thread Mark Thomas
Tim Funk wrote: > Is this screaming XSS attack? > > Since javadocs in getRequestURI() say ... "The web container does not > decode this String" It would be if it wasn't for line 177 of o.a.c.valves.ErrorReportValve which does: String message = RequestUtil.filter(response.getMessage()); Mark --

Re: svn commit: r496022 - in /tomcat: container/tc5.5.x/webapps/docs/changelog.xml jasper/tc5.5.x/src/share/org/apache/jasper/servlet/JspServlet.java

2007-01-14 Thread Tim Funk
Is this screaming XSS attack? Since javadocs in getRequestURI() say ... "The web container does not decode this String" -Tim [EMAIL PROTECTED] wrote: Author: markt Date: Sat Jan 13 18:45:48 2007 New Revision: 496022 URL: http://svn.apache.org/viewvc?view=rev&rev=496022 Modified: tomcat/j

DO NOT REPLY [Bug 39627] - JULI ignores a ".level = XXX" directive in logging.properties

2007-01-14 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

svn commit: r496093 - in /tomcat: connectors/trunk/juli/src/java/org/apache/juli/ClassLoaderLogManager.java container/tc5.5.x/webapps/docs/changelog.xml

2007-01-14 Thread markt
Author: markt Date: Sun Jan 14 08:02:20 2007 New Revision: 496093 URL: http://svn.apache.org/viewvc?view=rev&rev=496093 Log: Fix bug 39627. JULI now acts on a .level=XXX directive Modified: tomcat/connectors/trunk/juli/src/java/org/apache/juli/ClassLoaderLogManager.java tomcat/container/

DO NOT REPLY [Bug 40306] - mod_jk, POST request bodies are not restored on successful login when using mod_jk

2007-01-14 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

DO NOT REPLY [Bug 41244] - webservice :no response using connector AJP with tomcat >=5.5.10

2007-01-14 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

DO NOT REPLY [Bug 40524] - request.getAuthType() returns different string from HttpServletRequest.CLIENT_CERT_AUTH

2007-01-14 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

svn commit: r496089 - in /tomcat/container/tc5.5.x: catalina/src/share/org/apache/catalina/authenticator/ catalina/src/share/org/apache/catalina/startup/ webapps/docs/

2007-01-14 Thread markt
Author: markt Date: Sun Jan 14 07:29:10 2007 New Revision: 496089 URL: http://svn.apache.org/viewvc?view=rev&rev=496089 Log: Fix bug 40524. request.getAuthType() now returns CLIENT_CERT rather than CLIENT-CERT as per the spec. Now only web.xml, o.a.c.deploy.LoginConfig and Authenticators.propert

is there a hard coded size limit to mod_jk response headers?

2007-01-14 Thread Yuri de Wit
I am getting a buffer overflow while using my webapp deployed to Apache2, mod_jk1.2 and Tomcat5.5.17. I am basically trying to send an HTTP response back to the browser with a custom json header (X-JSON header) containing more than 8Kb since this is the default way to send json state back to the