r the vote to finish... I believe we have 3 votes
>> to release.
>
>> http://tomcat.markmail.org/thread/evury5r6rwcls5df
>
>> -chris
>
>>> -Original Message----- From: Mark Thomas
>>> [mailto:ma...@apache.org] Sent: Sunday, July 26, 2015 10:16 PM
>&
ly 26, 2015 10:16 PM
>> To: Tomcat Users List Subject: Re: AW:
>> Question concerning mod_jk Security Fix CVE-2014-8111
>
>> On 20/07/2015 10:58, Kreuser, Peter wrote:
>
>>
>
>>> Hi Mark,
>>>
>>> I appreciate your open comment and t
inal Message- From: Mark Thomas
>> [mailto:ma...@apache.org] Sent: Sunday, July 26, 2015 10:16 PM To:
>> Tomcat Users List Subject: Re: AW:
>> Question concerning mod_jk Security Fix CVE-2014-8111
>>
>> On 20/07/2015 10:58, Kreuser, Peter wrote:
>>
>>
a...@apache.org] Sent: Sunday, July 26, 2015 10:16 PM To:
> Tomcat Users List Subject: Re: AW:
> Question concerning mod_jk Security Fix CVE-2014-8111
>
> On 20/07/2015 10:58, Kreuser, Peter wrote:
>
>
>
>> Hi Mark,
>>
>> I appreciate your open comment and th
e 3 votes to
release.
http://tomcat.markmail.org/thread/evury5r6rwcls5df
- -chris
> -Original Message- From: Mark Thomas
> [mailto:ma...@apache.org] Sent: Sunday, July 26, 2015 10:16 PM To:
> Tomcat Users List Subject: Re: AW:
> Question concerning mod_jk Security Fix CVE-2014-
Hi,
When can we expect the release of JK 1.2.41 source code?
Regards,
Chinoy
-Original Message-
From: Mark Thomas [mailto:ma...@apache.org]
Sent: Sunday, July 26, 2015 10:16 PM
To: Tomcat Users List
Subject: Re: AW: Question concerning mod_jk Security Fix CVE-2014-8111
On 20/07/2015
On 20/07/2015 10:58, Kreuser, Peter wrote:
> Hi Mark,
>
> I appreciate your open comment and that clarifies the lengthy wait. I
> trust that now the solution gets going and will be solved soonish.
>
> I'm in no position to criticize any wrongdoing on this CVE. I only
> hope to find a clearer c
> -Ursprüngliche Nachricht-
> Von: Mark Thomas [mailto:ma...@apache.org]
> Gesendet: Freitag, 17. Juli 2015 12:33
> An: Tomcat Users List
> Betreff: Re: Question concerning mod_jk Security Fix CVE-2014-8111
>
> On 16/07/2015 13:16, Kreuser, Peter wrote:
> &
On 16/07/2015 13:16, Kreuser, Peter wrote:
> Please let me repeat my question from June 6th:
>
> Why is this CVE still not addressed in "Apache Tomcat JK Connectors
> vulnerabilities" http://tomcat.apache.org/security-jk.html?
>
> http://www.cvedetails.com/cve/CVE-2014-8111/
I'm a project commi
Please let me repeat my question from June 6th:
Why is this CVE still not addressed in "Apache Tomcat JK Connectors
vulnerabilities" http://tomcat.apache.org/security-jk.html?
http://www.cvedetails.com/cve/CVE-2014-8111/
-
Hi,
could you please tell us, when th
Hi Peter,
I've asked the same question on 31.05 but got no reply so far. Thanks
for the RedHat link.
Regards,
Pascal
On 06/08/2015 01:43 PM, Kreuser, Peter wrote:
> Hi,
>
> could you please tell us, when the fixed mod_jk-Version 1.2.41 will be
> publicly available?
>
> The webpage does not m
Hi,
could you please tell us, when the fixed mod_jk-Version 1.2.41 will be publicly
available?
The webpage does not mention any vulnerability at all, plus no newer release
than the vulnerable 1.2.40.
For now RedHat mentions only the fix to the source code from December 2014.
http://svn.apache.
12 matches
Mail list logo