[tomcat] branch main updated: Rewrite some critical but optional code with Panama

2022-06-23 Thread remm
This is an automated email from the ASF dual-hosted git repository. remm pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new 5294ebc7ba Rewrite some critical but optional code wit

[tomcat] branch main updated: Tomcat 10.1.x requires Java 11

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new dc8f4d61d2 Tomcat 10.1.x requires Java 11 dc8f4d61d2

[Bug 66141] New: useBomIfPresent removes UTF-BOM without modifying HTTP Content-Length

2022-06-23 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=66141 Bug ID: 66141 Summary: useBomIfPresent removes UTF-BOM without modifying HTTP Content-Length Product: Tomcat 9 Version: 9.0.26 Hardware: PC OS: Windows NT

[Bug 66141] useBomIfPresent removes UTF-BOM without modifying HTTP Content-Length

2022-06-23 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=66141 Jano John Akim Franke changed: What|Removed |Added OS|Windows NT |Linux Hardware|PC

[Bug 66141] useBomIfPresent removes UTF-BOM without modifying HTTP Content-Length

2022-06-23 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=66141 Jano John Akim Franke changed: What|Removed |Added Keywords||RFC -- You are receiving this

svn commit: r1902189 - in /tomcat/site/trunk: docs/security-10.html docs/security-9.html xdocs/security-10.xml xdocs/security-9.xml

2022-06-23 Thread markt
Author: markt Date: Thu Jun 23 09:43:33 2022 New Revision: 1902189 URL: http://svn.apache.org/viewvc?rev=1902189&view=rev Log: Add release dates Modified: tomcat/site/trunk/docs/security-10.html tomcat/site/trunk/docs/security-9.html tomcat/site/trunk/xdocs/security-10.xml tomcat/

[SECURITY] CVE-2022-34305 Apache Tomcat - XSS in examples web application

2022-06-23 Thread Mark Thomas
CVE-2022-34305 Apache Tomcat - XSS in examples web application Severity: Low Vendor: The Apache Software Foundation Versions Affected: Apache Tomcat 10.1.0-M1 to 10.1.0-M16 Apache Tomcat 10.0.0-M1 to 10.0.22 Apache Tomcat 9.0.30 to 9.0.64 Apache Tomcat 8.5.50 to 8.5.81 Description: The Form au

[tomcat] branch main updated: Fix CVE-2022-34305 XSS in the examples web application

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new d6251d1cfb Fix CVE-2022-34305 XSS in the examples web

[tomcat] branch 10.0.x updated: Fix CVE-2022-34305 XSS in the examples web application

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 10.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/10.0.x by this push: new 1a7e95d9c3 Fix CVE-2022-34305 XSS in the examples

[tomcat] branch 9.0.x updated: Fix CVE-2022-34305 XSS in the examples web application

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 9.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/9.0.x by this push: new 8b60af90b9 Fix CVE-2022-34305 XSS in the examples w

[tomcat] branch 8.5.x updated: Fix CVE-2022-34305 XSS in the examples web application

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 8.5.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/8.5.x by this push: new 5f6c88b054 Fix CVE-2022-34305 XSS in the examples w

svn commit: r1902190 - in /tomcat/site/trunk: docs/security-10.html docs/security-8.html docs/security-9.html xdocs/security-10.xml xdocs/security-8.xml xdocs/security-9.xml

2022-06-23 Thread markt
Author: markt Date: Thu Jun 23 10:11:13 2022 New Revision: 1902190 URL: http://svn.apache.org/viewvc?rev=1902190&view=rev Log: Update site for CVE-2022-34305 Modified: tomcat/site/trunk/docs/security-10.html tomcat/site/trunk/docs/security-8.html tomcat/site/trunk/docs/security-9.html

[Bug 66141] useBomIfPresent removes UTF-BOM without modifying HTTP Content-Length

2022-06-23 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=66141 --- Comment #1 from Jano John Akim Franke --- Example output of test-encoding.sh showing file transfer with retry resulting in modified file contents: Contents UTF-8: ...TEST 1. try: TEST(timeout waiting for 3 bytes) 2. try

[tomcat] branch main updated: Fix a regresssion in the Loom refactoring

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new 7d4a1d5846 Fix a regresssion in the Loom refactoring

[Bug 66142] New: Encounter "ejectedExecutionException: Queue capacity is full" when #busy thread is less than minSpareThreads

2022-06-23 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=66142 Bug ID: 66142 Summary: Encounter "ejectedExecutionException: Queue capacity is full" when #busy thread is less than minSpareThreads Product: Tomcat 8 Version: 8

[Bug 66141] useBomIfPresent removes UTF-BOM without modifying HTTP Content-Length

2022-06-23 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=66141 Mark Thomas changed: What|Removed |Added Resolution|--- |INVALID Status|NEW

[Bug 66142] Encounter "ejectedExecutionException: Queue capacity is full" when #busy thread is less than minSpareThreads

2022-06-23 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=66142 Mark Thomas changed: What|Removed |Added Status|NEW |RESOLVED Resolution|---

[tomcat] branch main updated: Document possibility of file locking on Windows with HTTP/2 sendfile

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new 64966542af Document possibility of file locking on Wi

[tomcat] branch 10.0.x updated: Document possibility of file locking on Windows with HTTP/2 sendfile

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 10.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/10.0.x by this push: new 280b7eb6b9 Document possibility of file locking o

[tomcat] branch 9.0.x updated: Document possibility of file locking on Windows with HTTP/2 sendfile

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 9.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/9.0.x by this push: new d761e1b1fc Document possibility of file locking on

[tomcat-connectors] branch main updated: Fix indentation and similar style issues - no functional change

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new d32a65124 Fix indentation and similar styl

[tomcat-connectors] branch main updated: Standardize variable name for jk_ws_service_t args to "s".

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 1cddcdc71 Standardize variable name for jk

[tomcat-connectors] branch main updated: Remove outdated comment.

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new b91104248 Remove outdated comment. b911042

[tomcat-connectors] branch main updated: IIS: Fix non-empty check for the Translate header.

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 3e1a20870 IIS: Fix non-empty check for the

[tomcat-connectors] branch main updated: Drop unused logger argument in two basic functions

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 34f5d4d93 Drop unused logger argument in t

[tomcat-connectors] branch main updated: Drop broken log statement (not yet initialized), reformat comment

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new f309dbc95 Drop broken log statement (not y

[tomcat-connectors] branch main updated: Switch from logger to log context - part 1:

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new e073520ba Switch from logger to log contex

[tomcat-connectors] branch main updated: Switch from logger to log context - part 2:

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 557351ce3 Switch from logger to log contex

[tomcat-connectors] branch main updated: Switch from logger to log context - part 3:

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 705ba75d1 Switch from logger to log contex

[tomcat] branch main updated: Refactor HTTP/2 tests to test with and without asyncIO

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new 0bc1407cdc Refactor HTTP/2 tests to test with and wit

[tomcat-connectors] branch main updated: Switch from logger to log context - part 4:

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new cff588fca Switch from logger to log contex

[tomcat-connectors] branch main updated: Switch from logger to log context - part 5:

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 13a4a17e3 Switch from logger to log contex

[tomcat-connectors] branch main updated: Switch from logger to log context - part 6:

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new d444e03ab Switch from logger to log contex

Re: [tomcat] branch main updated: Fix a regresssion in the Loom refactoring

2022-06-23 Thread Christopher Schultz
Mark, On 6/23/22 09:02, ma...@apache.org wrote: This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new 7

[tomcat] branch main updated: Align with 10.0.x

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new 8e69a43e8b Align with 10.0.x 8e69a43e8b is described

[tomcat] branch 10.0.x updated: Refactor HTTP/2 tests to test with and without asyncIO

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 10.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/10.0.x by this push: new 6809a1b824 Refactor HTTP/2 tests to test with and

[tomcat-connectors] branch main updated: Minor whitespace fix

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 08fed30b1 Minor whitespace fix 08fed30b1 i

[tomcat] branch 9.0.x updated: Refactor HTTP/2 tests to test with and without asyncIO

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 9.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/9.0.x by this push: new 1f5f3aae75 Refactor HTTP/2 tests to test with and w

[tomcat-connectors] branch main updated: Apache: allow to configure an environment variable which provides a request id different from the default one provided by mod_unqiue_id. Especially such an env

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 8bd804610 Apache: allow to configure an en

[tomcat-connectors] branch main updated: Fix module name in new docs snippet.

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new d6cc91f84 Fix module name in new docs snip

[tomcat-connectors] branch main updated: IIS: Provide a default request id using CoCreateGuid. Allow to retrieve the request id from a configurable request header (config item "request_id_header").

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new e68d95ca7 IIS: Provide a default request i

[tomcat-connectors] branch main updated: Make log messages more precise

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 2cf996f7e Make log messages more precise 2

[tomcat-connectors] branch main updated: Fix some code comments

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 9a8b217a6 Fix some code comments 9a8b217a6

[tomcat-connectors] branch main updated: Use better variable name

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 7836c3f59 Use better variable name 7836c3f

[tomcat] branch main updated: Use connector protocol rather than hard-coding NIO

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new db2f9eac23 Use connector protocol rather than hard-co

[tomcat] branch 10.0.x updated: Use connector protocol rather than hard-coding NIO

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 10.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/10.0.x by this push: new c72e57f0a9 Use connector protocol rather than har

[tomcat-connectors] branch main updated: Use better variable name

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 1af8291ac Use better variable name 1af8291

[tomcat] branch main updated: Align with 9.0.x

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new 009f44e31e Align with 9.0.x 009f44e31e is described b

[tomcat] branch 10.0.x updated: Align with 9.0.x

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 10.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/10.0.x by this push: new db1e110ffc Align with 9.0.x db1e110ffc is describ

[tomcat] branch main updated: Update HEAD tests after HTTP/2 test refactoring

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new 8c92cc1bc0 Update HEAD tests after HTTP/2 test refact

[tomcat] branch main updated: Attempt to reduce test failures on slower systems

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new a37c11 Attempt to reduce test failures on slower

[tomcat] branch 10.0.x updated: Attempt to reduce test failures on slower systems

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 10.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/10.0.x by this push: new 4707e7e1de Attempt to reduce test failures on slo

[tomcat] branch 9.0.x updated: Align with 10.0.x

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 9.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/9.0.x by this push: new 6d5336f885 Align with 10.0.x 6d5336f885 is describe

[tomcat] branch 9.0.x updated: Attempt to reduce test failures on slower systems

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 9.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/9.0.x by this push: new cb2f38a842 Attempt to reduce test failures on slowe

[tomcat] branch 8.5.x updated (5f6c88b054 -> 3846af73bb)

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a change to branch 8.5.x in repository https://gitbox.apache.org/repos/asf/tomcat.git from 5f6c88b054 Fix CVE-2022-34305 XSS in the examples web application new dd7b032a79 Align with 10.0.x new 3846af7

[tomcat] 01/02: Align with 10.0.x

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 8.5.x in repository https://gitbox.apache.org/repos/asf/tomcat.git commit dd7b032a791b899a3407076d56bc84b64ded67f6 Author: Mark Thomas AuthorDate: Thu Jun 23 23:04:38 2022 +0100 Align with 10

[tomcat] 02/02: Attempt to reduce test failures on slower systems

2022-06-23 Thread markt
This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch 8.5.x in repository https://gitbox.apache.org/repos/asf/tomcat.git commit 3846af73bb666eee805a366025952717964c68da Author: Mark Thomas AuthorDate: Thu Jun 23 22:57:05 2022 +0100 Attempt to re

[tomcat-connectors] branch main updated: Break some long lines, no functional change

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 03e18177b Break some long lines, no functi

[tomcat-connectors] branch main updated: Add more changelog info for new request id

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 608c33273 Add more changelog info for new

[tomcat-connectors] branch main updated: Add more docs on new request id feature

2022-06-23 Thread rjung
This is an automated email from the ASF dual-hosted git repository. rjung pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-connectors.git The following commit(s) were added to refs/heads/main by this push: new 88d54685f Add more docs on new request id

Re: Request-ID added to mod_jk log

2022-06-23 Thread Rainer Jung
Hi all, first a short reminder: I added logging of a request id to the mod_jk log to ease correlation with other Apache logs, like the access log. It was motivated by a discussion with Chris, although the end result wasn't exactly what he liked most. After thinking more about the feature I c

[GitHub] [tomcat-taglibs-rdc] dependabot[bot] opened a new pull request, #1: Bump xercesImpl from 2.4.0 to 2.12.2

2022-06-23 Thread GitBox
dependabot[bot] opened a new pull request, #1: URL: https://github.com/apache/tomcat-taglibs-rdc/pull/1 Bumps xercesImpl from 2.4.0 to 2.12.2. [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=xerces:xercesImpl&pa

[tomcat-taglibs-rdc] branch dependabot/maven/xerces-xercesImpl-2.12.2 created (now bf18c8a)

2022-06-23 Thread github-bot
This is an automated email from the ASF dual-hosted git repository. github-bot pushed a change to branch dependabot/maven/xerces-xercesImpl-2.12.2 in repository https://gitbox.apache.org/repos/asf/tomcat-taglibs-rdc.git at bf18c8a Bump xercesImpl from 2.4.0 to 2.12.2 No new revisions wer