IOException on s390x

2018-01-31 Thread Vivian Kong
Hi, I'm running the tests that comes with v8.5.24 on Linux on s390x and hit the following failure: Testcase: testHeaderLimits10x512k took 10.659 sec Caused an ERROR End of input stream java.io.IOException: End of input stream at org.apache.coyote.http2.Http2TestBase$TestInput.fi

[SECURITY] CVE-2017-15706 Apache Tomcat Incorrectly documented CGI search algorithm

2018-01-31 Thread Mark Thomas
CVE-2017-15706 Apache Tomcat Incorrectly documented CGI search algorithm Severity: Low Vendor: The Apache Software Foundation Versions Affected: Apache Tomcat 9.0.0.M22 to 9.0.1 Apache Tomcat 8.5.16 to 8.5.23 Apache Tomcat 8.0.45 to 8.0.47 Apache Tomcat 7.0.79 to 7.0.82 Description: As part of

[SECURITY] CVE-2017-15698 Apache Tomcat Native Connector - OCSP check omitted

2018-01-31 Thread Mark Thomas
CVE-2017-15698 Apache Tomcat Native Connector - OCSP check omitted Severity: Moderate Vendor: The Apache Software Foundation Versions Affected: Apache Tomcat Native 1.2.0 to 1.2.14 Apache Tomcat Native 1.1.23 to 1.1.34 Description: When parsing the AIA-Extension field of a client certificate, A