Re: svn commit: r544137 - /tomcat/connectors/trunk/jk/native/common/jk_uri_worker_map.c

2007-06-05 Thread Mladen Turk
Mark Thomas wrote: >> mod_jk 1.2.23 (with default passing r->unparsed_uri) will return 404 >> from Tomcat becasue it will pass the original uri, not the one Httpd >> already unfolded) > This is correct and provides consistent behaviour for direct to Tomcat > access and access via mod_jk. > It is

Re: svn commit: r544137 - /tomcat/connectors/trunk/jk/native/common/jk_uri_worker_map.c

2007-06-05 Thread Mark Thomas
Mladen Turk wrote: > William A. Rowe, Jr. wrote: >> [EMAIL PROTECTED] wrote: >>> Add simple URI normalizer that can deal with things like %252e%252e. >>> This is mostly copy/paste from the IIS module >> >> You have me way confused ;-) >> > > How it works: > Imagine you have two applications on Tom

svn commit: r544700 - /tomcat/tc6.0.x/trunk/bin/service.bat

2007-06-05 Thread markt
Author: markt Date: Tue Jun 5 18:08:53 2007 New Revision: 544700 URL: http://svn.apache.org/viewvc?view=rev&rev=544700 Log: Fix old reference to Jakarta. Modified: tomcat/tc6.0.x/trunk/bin/service.bat Modified: tomcat/tc6.0.x/trunk/bin/service.bat URL: http://svn.apache.org/viewvc/tomcat/t

svn commit: r544699 - in /tomcat/site/trunk/docs: security-5.html security-6.html

2007-06-05 Thread markt
Author: markt Date: Tue Jun 5 17:55:54 2007 New Revision: 544699 URL: http://svn.apache.org/viewvc?view=rev&rev=544699 Log: Remember to update the html as well... Modified: tomcat/site/trunk/docs/security-5.html tomcat/site/trunk/docs/security-6.html Modified: tomcat/site/trunk/docs/sec

svn commit: r544698 - in /tomcat/site/trunk/xdocs: security-5.xml security-6.xml

2007-06-05 Thread markt
Author: markt Date: Tue Jun 5 17:54:15 2007 New Revision: 544698 URL: http://svn.apache.org/viewvc?view=rev&rev=544698 Log: Add details for CVE-2007-1358 to TC5 and TC6. Modified: tomcat/site/trunk/xdocs/security-5.xml tomcat/site/trunk/xdocs/security-6.xml Modified: tomcat/site/trunk/x

svn commit: r544697 - /tomcat/container/branches/tc5.0.x/catalina/src/share/org/apache/coyote/tomcat5/CoyoteRequest.java

2007-06-05 Thread markt
Author: markt Date: Tue Jun 5 17:51:12 2007 New Revision: 544697 URL: http://svn.apache.org/viewvc?view=rev&rev=544697 Log: Port fix for CVE-2007-1358 to TC5.0.x Modified: tomcat/container/branches/tc5.0.x/catalina/src/share/org/apache/coyote/tomcat5/CoyoteRequest.java Modified: tomcat/co

jk/native/common/jk_uri_worker_map.c Efficiency in map_uri_to_worker()?

2007-06-05 Thread Webster, Chris
The code change was brought to my attention by sans.org (for vulnerability CVE 2007-0774). No offense intended but the fix seems a little inefficient. It shows the fix coded as: for (i = 0; i < strlen(uri); i++) { if (i == JK_MAX_URI_LEN) { jk_log(l, JK_LOG_WARNING,

DO NOT REPLY [Bug 42593] New: - Win32 Apache/jk/tomcat configuration causes 100% cpu usage

2007-06-05 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

DO NOT REPLY [Bug 41430] - JkOptions +ForwardDirectories with Apache's DirectoryIndex

2007-06-05 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

Tagging 5.5.24

2007-06-05 Thread Filip Hanik - Dev Lists
On Thursday, evening in europe, morning in US Filip - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]

DO NOT REPLY [Bug 42409] - Extra response headers not sent when using custom error page

2007-06-05 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

DO NOT REPLY [Bug 42409] - Extra response headers not sent when using custom error page

2007-06-05 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu

DO NOT REPLY [Bug 42490] - Tomcat Crashes Sometimes When Using Cgywin

2007-06-05 Thread bugzilla
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG· RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT . ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND· INSERTED IN THE BUG DATABASE. http://issues.apache.org/bugzilla/show_bu