diff options
author | William Thomson <wltjr@gentoo.org> | 2007-06-17 15:53:56 +0000 |
---|---|---|
committer | William Thomson <wltjr@gentoo.org> | 2007-06-17 15:53:56 +0000 |
commit | 62af5620cab974624b88840e1a4bb43921e25150 (patch) | |
tree | 501b9f686bf5fe26edb4e79d7c68034487f46c4c /www-servers | |
parent | Fix rfc use flags; add debug use flag; fix null-pointer in QmailLDAP/Controls... (diff) | |
download | historical-62af5620cab974624b88840e1a4bb43921e25150.tar.gz historical-62af5620cab974624b88840e1a4bb43921e25150.tar.bz2 historical-62af5620cab974624b88840e1a4bb43921e25150.zip |
Added warnings in pkg_postinst about the two vulnerabilities, per bug #182262
Package-Manager: portage-2.1.2.9
Diffstat (limited to 'www-servers')
-rw-r--r-- | www-servers/tomcat/ChangeLog | 7 | ||||
-rw-r--r-- | www-servers/tomcat/Manifest | 39 | ||||
-rw-r--r-- | www-servers/tomcat/files/digest-tomcat-6.0.13-r1 | 3 | ||||
-rw-r--r-- | www-servers/tomcat/tomcat-5.5.23-r1.ebuild | 10 | ||||
-rw-r--r-- | www-servers/tomcat/tomcat-5.5.23-r6.ebuild | 10 | ||||
-rw-r--r-- | www-servers/tomcat/tomcat-6.0.13-r1.ebuild | 185 | ||||
-rw-r--r-- | www-servers/tomcat/tomcat-6.0.13-r3.ebuild | 10 |
7 files changed, 49 insertions, 215 deletions
diff --git a/www-servers/tomcat/ChangeLog b/www-servers/tomcat/ChangeLog index 1b8fcaa246b8..e9155b8d6c0d 100644 --- a/www-servers/tomcat/ChangeLog +++ b/www-servers/tomcat/ChangeLog @@ -1,6 +1,11 @@ # ChangeLog for www-servers/tomcat # Copyright 1999-2007 Gentoo Foundation; Distributed under the GPL v2 -# $Header: /var/cvsroot/gentoo-x86/www-servers/tomcat/ChangeLog,v 1.149 2007/06/07 07:40:03 corsair Exp $ +# $Header: /var/cvsroot/gentoo-x86/www-servers/tomcat/ChangeLog,v 1.150 2007/06/17 15:53:56 wltjr Exp $ + + 17 Jun 2007; William L. Thomson Jr. <wltjr@gentoo.org> + tomcat-5.5.23-r1.ebuild, tomcat-5.5.23-r6.ebuild, + -tomcat-6.0.13-r1.ebuild, tomcat-6.0.13-r3.ebuild: + Added warnings in pkg_postinst about the two vulnerabilities, per bug #182262 07 Jun 2007; Markus Rothe <corsair@gentoo.org> tomcat-6.0.13-r3.ebuild: Added ~ppc64; bug #178701 diff --git a/www-servers/tomcat/Manifest b/www-servers/tomcat/Manifest index 89d4f999ec69..be109f756c9c 100644 --- a/www-servers/tomcat/Manifest +++ b/www-servers/tomcat/Manifest @@ -60,26 +60,22 @@ RMD160 169a9af752e814f7cafbfa849fb1dbc433bbbbf3 files/6/tomcat.init 3355 SHA256 d53e31a221a3e78f6cc8686d7e123da10216a46851e64a2f5819f1f8147b86b8 files/6/tomcat.init 3355 DIST apache-tomcat-5.5.23-src.tar.gz 4895919 RMD160 fe669f6b864fd7dcf4ad74dad22a0256e5417005 SHA1 59272b5eedde9c32a126679ff9e1d2a5f56265c8 SHA256 e2f7ce250643349507b511a5ea96df7364030a061a8f4d5b71d8b5a099e2b6bd DIST apache-tomcat-6.0.13-src.tar.gz 3454302 RMD160 2ef73ec380736661969f28c231a4a0c9fbd6d29c SHA1 8a60e80b878609dc207a357fede749c67857dd54 SHA256 273c6d56283677c0c7033e6ecce53ba7f1fac6930e20e83acccfe2ac88c6a6ff -EBUILD tomcat-5.5.23-r1.ebuild 10630 RMD160 a164f36224fb766d6f10092d84b953dc5930b5a0 SHA1 d731665a2123e5d73952c48dce272e94334bbd4e SHA256 97454d3a2e93b87c86d52b29b075842e6e80d77b948e777fac7b9db4d8a7ca2b -MD5 ddc708762bdbc5648c2bbd2363e8996d tomcat-5.5.23-r1.ebuild 10630 -RMD160 a164f36224fb766d6f10092d84b953dc5930b5a0 tomcat-5.5.23-r1.ebuild 10630 -SHA256 97454d3a2e93b87c86d52b29b075842e6e80d77b948e777fac7b9db4d8a7ca2b tomcat-5.5.23-r1.ebuild 10630 -EBUILD tomcat-5.5.23-r6.ebuild 10900 RMD160 3f37e78130e8ec4918c61db449b0333923370008 SHA1 646b903a3bd64d035330ef81d1c496da5c53fc3c SHA256 7899e88d03d27b630b601398343a760e4f6b755f1c065766faea9e0ec4887865 -MD5 0590e042b6d851605229c7beccb955e0 tomcat-5.5.23-r6.ebuild 10900 -RMD160 3f37e78130e8ec4918c61db449b0333923370008 tomcat-5.5.23-r6.ebuild 10900 -SHA256 7899e88d03d27b630b601398343a760e4f6b755f1c065766faea9e0ec4887865 tomcat-5.5.23-r6.ebuild 10900 -EBUILD tomcat-6.0.13-r1.ebuild 6074 RMD160 77ee406c7b9be25f343ad9d0bbd779540f45a47c SHA1 02f6812bf6e4ef0585e892a42ed2903fdaed00d5 SHA256 4b25228b9bcc255a04ee66afc8b5a17bd0e775b116f9e75633927e077a969f06 -MD5 a4f036b0755970f72a6f5f4f484ed67d tomcat-6.0.13-r1.ebuild 6074 -RMD160 77ee406c7b9be25f343ad9d0bbd779540f45a47c tomcat-6.0.13-r1.ebuild 6074 -SHA256 4b25228b9bcc255a04ee66afc8b5a17bd0e775b116f9e75633927e077a969f06 tomcat-6.0.13-r1.ebuild 6074 -EBUILD tomcat-6.0.13-r3.ebuild 5908 RMD160 d349e76d28dee5bc12d108d62d67abd37abfc6b2 SHA1 68441eadda1838380c34758692dc3e36e5f6ee5b SHA256 620ff1c64008c36329a8aef3d5f211c06717914dd7bd9d5b437edd30fde060e6 -MD5 56172f13e49d8cf4557bc5580c98fb1c tomcat-6.0.13-r3.ebuild 5908 -RMD160 d349e76d28dee5bc12d108d62d67abd37abfc6b2 tomcat-6.0.13-r3.ebuild 5908 -SHA256 620ff1c64008c36329a8aef3d5f211c06717914dd7bd9d5b437edd30fde060e6 tomcat-6.0.13-r3.ebuild 5908 -MISC ChangeLog 46985 RMD160 75146d0e5df931858b8ce072e037a0312cd81f84 SHA1 d6e206e28621d25f62d6919030f1d942f4d657ce SHA256 b7a71acb8b0eec89952c60a438c64f21c64a99aaf29db9c0a6b820c37e2f503d -MD5 b3989cf2671517bc365e78599da42ff1 ChangeLog 46985 -RMD160 75146d0e5df931858b8ce072e037a0312cd81f84 ChangeLog 46985 -SHA256 b7a71acb8b0eec89952c60a438c64f21c64a99aaf29db9c0a6b820c37e2f503d ChangeLog 46985 +EBUILD tomcat-5.5.23-r1.ebuild 10930 RMD160 3eccd694f37bebd9b8f827a3446eb59df1a2889e SHA1 f268c6b677ebd1839917537409f139e67de38c1a SHA256 b9f02c81150d88932f35db49158fbdd1fcf13de8cc0336ed33b75cf2a22748f1 +MD5 9b53dd2cac285f9e9682b90a0e920b53 tomcat-5.5.23-r1.ebuild 10930 +RMD160 3eccd694f37bebd9b8f827a3446eb59df1a2889e tomcat-5.5.23-r1.ebuild 10930 +SHA256 b9f02c81150d88932f35db49158fbdd1fcf13de8cc0336ed33b75cf2a22748f1 tomcat-5.5.23-r1.ebuild 10930 +EBUILD tomcat-5.5.23-r6.ebuild 11205 RMD160 55e12cf2c49734c1b9dd936229c6bd5b1c893181 SHA1 d366584706e9e8e681b08c48da929f201fb7c493 SHA256 510082f2ac2d7a2bf159ca137ddbd8dbe83a973cd27a41bb2d8b4d0f6162594f +MD5 fee3e34c3a82848a79a6e4591dc10317 tomcat-5.5.23-r6.ebuild 11205 +RMD160 55e12cf2c49734c1b9dd936229c6bd5b1c893181 tomcat-5.5.23-r6.ebuild 11205 +SHA256 510082f2ac2d7a2bf159ca137ddbd8dbe83a973cd27a41bb2d8b4d0f6162594f tomcat-5.5.23-r6.ebuild 11205 +EBUILD tomcat-6.0.13-r3.ebuild 6211 RMD160 b1510a157c565baf95b6daa6f5eb9a1f7d37a388 SHA1 cc2c12c86cc60d538c9331e13611c3dcfa09b720 SHA256 d94dc7725774a244c3b2074b4ee5530c7e2727204a84e18aa10fbdcdbb1bf840 +MD5 ea4b4e5030c06cc68f54f49c5de391f8 tomcat-6.0.13-r3.ebuild 6211 +RMD160 b1510a157c565baf95b6daa6f5eb9a1f7d37a388 tomcat-6.0.13-r3.ebuild 6211 +SHA256 d94dc7725774a244c3b2074b4ee5530c7e2727204a84e18aa10fbdcdbb1bf840 tomcat-6.0.13-r3.ebuild 6211 +MISC ChangeLog 47226 RMD160 c85525728e21818e36fc2caf4620c3bc2a6f9e68 SHA1 744fcc8dfca15ac3e7848e6e6fb3c484bfe7e5a9 SHA256 6691c75b3eafe0dca318fd55ee831aacb3be22786e171ba06f83340b8fb800fe +MD5 1fdc2edf9d6ee196565dd2ebe48cc874 ChangeLog 47226 +RMD160 c85525728e21818e36fc2caf4620c3bc2a6f9e68 ChangeLog 47226 +SHA256 6691c75b3eafe0dca318fd55ee831aacb3be22786e171ba06f83340b8fb800fe ChangeLog 47226 MISC metadata.xml 556 RMD160 88a7809fe3f73c2d351b9fdda025fe88dfb11f31 SHA1 e8dcd8204d0ea02558dd07e1aded5dc58ed1460c SHA256 ac94c1d58b05b47598f311e6efb971fdb30ad9a25f3c32cb9c064fb6330dad79 MD5 0609d3339e0b8d5a3b4707f6b02aad3a metadata.xml 556 RMD160 88a7809fe3f73c2d351b9fdda025fe88dfb11f31 metadata.xml 556 @@ -90,9 +86,6 @@ SHA256 7c1430575374307e6337ec7f22b7822c2093deb36bb3e9fffaa4cf8b23f34051 files/di MD5 6947c731df35ce2149f4a2f8009b575f files/digest-tomcat-5.5.23-r6 277 RMD160 c7a3b4f7dd1b085332606c3d6a68cc21f0ff78e2 files/digest-tomcat-5.5.23-r6 277 SHA256 7c1430575374307e6337ec7f22b7822c2093deb36bb3e9fffaa4cf8b23f34051 files/digest-tomcat-5.5.23-r6 277 -MD5 689139367c10950ec819a442eb5dd0c1 files/digest-tomcat-6.0.13-r1 277 -RMD160 ede80f760c03677d75cfabf3c000208361d6c3c0 files/digest-tomcat-6.0.13-r1 277 -SHA256 66e25a7d2aed203cbc675c9e7c247da0627936e4bb7c7f9b992e511110f2993c files/digest-tomcat-6.0.13-r1 277 MD5 689139367c10950ec819a442eb5dd0c1 files/digest-tomcat-6.0.13-r3 277 RMD160 ede80f760c03677d75cfabf3c000208361d6c3c0 files/digest-tomcat-6.0.13-r3 277 SHA256 66e25a7d2aed203cbc675c9e7c247da0627936e4bb7c7f9b992e511110f2993c files/digest-tomcat-6.0.13-r3 277 diff --git a/www-servers/tomcat/files/digest-tomcat-6.0.13-r1 b/www-servers/tomcat/files/digest-tomcat-6.0.13-r1 deleted file mode 100644 index d9bfd1fdd00f..000000000000 --- a/www-servers/tomcat/files/digest-tomcat-6.0.13-r1 +++ /dev/null @@ -1,3 +0,0 @@ -MD5 50b3744d734eb12b679c25ac34f8a6ab apache-tomcat-6.0.13-src.tar.gz 3454302 -RMD160 2ef73ec380736661969f28c231a4a0c9fbd6d29c apache-tomcat-6.0.13-src.tar.gz 3454302 -SHA256 273c6d56283677c0c7033e6ecce53ba7f1fac6930e20e83acccfe2ac88c6a6ff apache-tomcat-6.0.13-src.tar.gz 3454302 diff --git a/www-servers/tomcat/tomcat-5.5.23-r1.ebuild b/www-servers/tomcat/tomcat-5.5.23-r1.ebuild index 150570b880de..27f302643927 100644 --- a/www-servers/tomcat/tomcat-5.5.23-r1.ebuild +++ b/www-servers/tomcat/tomcat-5.5.23-r1.ebuild @@ -1,6 +1,6 @@ # Copyright 1999-2007 Gentoo Foundation # Distributed under the terms of the GNU General Public License v2 -# $Header: /var/cvsroot/gentoo-x86/www-servers/tomcat/tomcat-5.5.23-r1.ebuild,v 1.4 2007/04/29 13:06:31 betelgeuse Exp $ +# $Header: /var/cvsroot/gentoo-x86/www-servers/tomcat/tomcat-5.5.23-r1.ebuild,v 1.5 2007/06/17 15:53:56 wltjr Exp $ #WANT_ANT_TASKS="ant-trax" @@ -281,6 +281,14 @@ pkg_postinst() { ewarn "naming-factory-dbcp.jar is not built at this time. Please fetch" ewarn "jar from upstream binary if you need it. Gentoo Bug # 144276" elog + ewarn "The manager webapps have known exploits, please refer to" + ewarn "http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2450" + if use examples ; then + elog + ewarn "The examples webapp has a known exploit, please refer to" + ewarn "http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2449" + fi + elog elog " Please file any bugs at http://bugs.gentoo.org/ or else it" elog " may not get seen. Thank you." elog diff --git a/www-servers/tomcat/tomcat-5.5.23-r6.ebuild b/www-servers/tomcat/tomcat-5.5.23-r6.ebuild index 56f1eba06f65..f1ae8b34c38c 100644 --- a/www-servers/tomcat/tomcat-5.5.23-r6.ebuild +++ b/www-servers/tomcat/tomcat-5.5.23-r6.ebuild @@ -1,6 +1,6 @@ # Copyright 1999-2007 Gentoo Foundation # Distributed under the terms of the GNU General Public License v2 -# $Header: /var/cvsroot/gentoo-x86/www-servers/tomcat/tomcat-5.5.23-r6.ebuild,v 1.1 2007/05/31 23:01:57 wltjr Exp $ +# $Header: /var/cvsroot/gentoo-x86/www-servers/tomcat/tomcat-5.5.23-r6.ebuild,v 1.2 2007/06/17 15:53:56 wltjr Exp $ #WANT_ANT_TASKS="ant-trax" @@ -286,6 +286,14 @@ pkg_postinst() { ewarn "naming-factory-dbcp.jar is not built at this time. Please fetch" ewarn "jar from upstream binary if you need it. Gentoo Bug # 144276" elog + ewarn "The manager webapps have known exploits, please refer to" + ewarn "http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2450" + if use examples ; then + elog + ewarn "The examples webapp has a known exploit, please refer to" + ewarn "http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2449" + fi + elog elog " Please file any bugs at http://bugs.gentoo.org/ or else it" elog " may not get seen. Thank you." elog diff --git a/www-servers/tomcat/tomcat-6.0.13-r1.ebuild b/www-servers/tomcat/tomcat-6.0.13-r1.ebuild deleted file mode 100644 index ed8839aba9e7..000000000000 --- a/www-servers/tomcat/tomcat-6.0.13-r1.ebuild +++ /dev/null @@ -1,185 +0,0 @@ -# Copyright 1999-2007 Gentoo Foundation -# Distributed under the terms of the GNU General Public License v2 -# $Header: /var/cvsroot/gentoo-x86/www-servers/tomcat/tomcat-6.0.13-r1.ebuild,v 1.3 2007/05/28 23:32:54 wltjr Exp $ - -WANT_ANT_TASKS="ant-trax" - -inherit eutils java-pkg-2 java-ant-2 - -DESCRIPTION="Tomcat Servlet-2.5/JSP-2.1 Container" - -MY_P="apache-${P}-src" -SLOT="6" -SRC_URI="mirror://apache/${PN}/${PN}-6/v${PV/_/-}/src/${MY_P}.tar.gz" -HOMEPAGE="http://tomcat.apache.org/" -KEYWORDS="~amd64 ~ppc ~x86 ~x86-fbsd" -LICENSE="Apache-2.0" - -IUSE="doc examples source test" - -COMMON_DEPEND="=dev-java/eclipse-ecj-3.2* - >=dev-java/commons-daemon-1.0.1 - >=dev-java/commons-dbcp-1.2.1 - >=dev-java/commons-logging-1.1 - >=dev-java/commons-pool-1.2 - ~dev-java/tomcat-servlet-api-${PV} - examples? ( dev-java/jakarta-jstl )" - -RDEPEND=">=virtual/jre-1.5 - dev-java/ant-core - ${COMMON_DEPEND}" - -DEPEND=">=virtual/jdk-1.5 - ${COMMON_DEPEND} - test? ( dev-java/junit )" - -S=${WORKDIR}/${MY_P} - -TOMCAT_NAME="${PN}-${SLOT}" -TOMCAT_HOME="/usr/share/${TOMCAT_NAME}" -WEBAPPS_DIR="/var/lib/${TOMCAT_NAME}/webapps" - -pkg_setup() { - java-pkg-2_pkg_setup - enewgroup tomcat 265 - enewuser tomcat 265 -1 /dev/null tomcat -} - -src_unpack() { - unpack ${A} - cd "${S}" - - epatch "${FILESDIR}/${SLOT}/build-xml.patch" - - cd webapps/examples/WEB-INF/lib/ - rm -v *.jar -} - -src_compile(){ - # Fix for bug # 178980 - if use amd64 && [[ "${GENTOO_VM}" = "sun-jdk-1.5" ]] ; then - java-pkg_force-compiler ecj-3.2 - fi - - local antflags="build-jasper-jdt deploy -Dbase.path=${T}" - antflags="${antflags} -Dcompile.debug=false" - if ! use doc; then - antflags="${antflags} -Dnobuild.docs=true" - fi - antflags="${antflags} -Dant.jar=$(java-pkg_getjar ant-core ant.jar)" - antflags="${antflags} -Dcommons-daemon.jar=$(java-pkg_getjar commons-daemon commons-daemon.jar)" - antflags="${antflags} -Djdt.jar=$(java-pkg_getjar eclipse-ecj-3.2 ecj.jar)" - antflags="${antflags} -Djsp-api.jar=$(java-pkg_getjar tomcat-servlet-api-2.5 jsp-api.jar)" - antflags="${antflags} -Dservlet-api.jar=$(java-pkg_getjar tomcat-servlet-api-2.5 servlet-api.jar)" - eant ${antflags} -} - -src_install() { - cd "${S}/output/build/bin" - rm -f *.bat commons-daemon.jar - java-pkg_jar-from commons-daemon - chmod 755 *.sh - - # register jars per bug #171496 - cd "${S}/output/build/lib/" - for jar in *.jar; do - java-pkg_dojar ${jar} - done - - local CATALINA_BASE=/var/lib/${TOMCAT_NAME}/ - - # init.d, conf.d - newinitd ${FILESDIR}/${SLOT}/tomcat.init ${TOMCAT_NAME} - newconfd ${FILESDIR}/${SLOT}/tomcat.conf ${TOMCAT_NAME} - - # create dir structure - diropts -m755 -o tomcat -g tomcat - dodir /etc/${TOMCAT_NAME}/Catalina/localhost - chown -R tomcat:tomcat ${D}/etc/${TOMCAT_NAME} - fperms 750 /etc/${TOMCAT_NAME} - dodir /usr/share/${TOMCAT_NAME} - keepdir ${WEBAPPS_DIR} - chown tomcat:tomcat ${D}/${WEBAPPS_DIR} || die "Failed to change owner off ${1}." - chmod 750 ${D}/${WEBAPPS_DIR} || die "Failed to change permissions off ${1}." - keepdir /var/log/${TOMCAT_NAME}/ - keepdir /var/tmp/${TOMCAT_NAME}/ - keepdir /var/run/${TOMCAT_NAME}/ - dodir ${CATALINA_BASE} - diropts -m0755 - - cd "${S}" - # fix context's so webapps will be deployed - sed -i -e 's:Context a:Context docBase="${catalina.home}/webapps/host-manager" a:' ${S}/webapps/host-manager/META-INF/context.xml - sed -i -e 's:Context a:Context docBase="${catalina.home}/webapps/manager" a:' ${S}/webapps/manager/META-INF/context.xml - - # replace the default pw with a random one, see #92281 - local randpw=$(echo ${RANDOM}|md5sum|cut -c 1-15) - sed -e s:SHUTDOWN:${randpw}: -i conf/server.xml - - # copy over the directories - chown -R tomcat:tomcat webapps/* conf/* - cp -pR conf/* ${D}/etc/${TOMCAT_NAME} || die "failed to copy conf" - cp -pPR output/build/bin ${D}/usr/share/${TOMCAT_NAME} || die "failed to copy" - - # replace catalina.policy with gentoo specific one bug #176701 -# cp ${FILESDIR}/${SLOT}/catalina.policy ${D}/etc/${TOMCAT_NAME} || die "failed to replace catalina.policy" - - cp ${T}/tomcat6-deps/jdt/jasper-jdt.jar ${D}/usr/share/${TOMCAT_NAME}/lib \ - || die "failed to copy" - - cd "${D}/usr/share/${TOMCAT_NAME}/lib" - java-pkg_jar-from tomcat-servlet-api-2.5 - - cd "${S}" - - # Copy over webapps, some controlled by use flags - cp -p RELEASE-NOTES webapps/ROOT/RELEASE-NOTES.txt - cp -pr webapps/ROOT ${D}${CATALINA_BASE}/webapps - - mkdir ${D}${TOMCAT_HOME}/webapps - chown tomcat:tomcat ${D}${TOMCAT_HOME}/webapps - cp -pr webapps/host-manager ${D}${TOMCAT_HOME}/webapps - cp -pr webapps/manager ${D}${TOMCAT_HOME}/webapps - - if use doc; then - cp -pr output/build/webapps/docs ${D}${CATALINA_BASE}/webapps - fi - if use examples; then - cd output/build/webapps/examples/WEB-INF/lib - java-pkg_jar-from jakarta-jstl jstl.jar - java-pkg_jar-from jakarta-jstl standard.jar - cd "${S}" - cp -pPr output/build/webapps/examples ${D}${CATALINA_BASE}/webapps - fi - - # symlink the directories to make CATALINA_BASE possible - dosym /etc/${TOMCAT_NAME} ${CATALINA_BASE}/conf - dosym /var/log/${TOMCAT_NAME} ${CATALINA_BASE}/logs - dosym /var/tmp/${TOMCAT_NAME} ${CATALINA_BASE}/temp - dosym /var/run/${TOMCAT_NAME} ${CATALINA_BASE}/work - - # link the manager's context to the right position - dosym ${TOMCAT_HOME}/webapps/host-manager/META-INF/context.xml /etc/${TOMCAT_NAME}/Catalina/localhost/host-manager.xml - dosym ${TOMCAT_HOME}/webapps/manager/META-INF/context.xml /etc/${TOMCAT_NAME}/Catalina/localhost/manager.xml - - dodoc ${S}/{RELEASE-NOTES,RUNNING.txt} - fperms 640 /etc/${TOMCAT_NAME}/tomcat-users.xml -} - -pkg_postinst() { - ewarn "Changing ownership recursively on /etc/${TOMCAT_NAME}" - # temp fix for bug #176097 - chown -fR tomcat:tomcat /etc/${TOMCAT_NAME} - ewarn "Owner ship changed to tomcat:tomcat. Temp hack/fix." - - elog - elog " This ebuild implements a FHS compliant layout for tomcat" - elog " Please read http://www.gentoo.org/proj/en/java/tomcat6-guide.xml" - elog " for more information." - elog - ewarn "tomcat-dbcp.jar is not built at this time. Please fetch jar" - ewarn "from upstream binary if you need it. Gentoo Bug # 144276" - elog - elog " Please report any bugs to http://bugs.gentoo.org/" - elog -} diff --git a/www-servers/tomcat/tomcat-6.0.13-r3.ebuild b/www-servers/tomcat/tomcat-6.0.13-r3.ebuild index 7f0175b7a5b9..2c6e1df87dae 100644 --- a/www-servers/tomcat/tomcat-6.0.13-r3.ebuild +++ b/www-servers/tomcat/tomcat-6.0.13-r3.ebuild @@ -1,6 +1,6 @@ # Copyright 1999-2007 Gentoo Foundation # Distributed under the terms of the GNU General Public License v2 -# $Header: /var/cvsroot/gentoo-x86/www-servers/tomcat/tomcat-6.0.13-r3.ebuild,v 1.2 2007/06/07 07:40:03 corsair Exp $ +# $Header: /var/cvsroot/gentoo-x86/www-servers/tomcat/tomcat-6.0.13-r3.ebuild,v 1.3 2007/06/17 15:53:56 wltjr Exp $ WANT_ANT_TASKS="ant-trax" @@ -183,6 +183,14 @@ pkg_postinst() { ewarn "tomcat-dbcp.jar is not built at this time. Please fetch jar" ewarn "from upstream binary if you need it. Gentoo Bug # 144276" elog + ewarn "The manager webapps have known exploits, please refer to" + ewarn "http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2450" + if use examples ; then + elog + ewarn "The examples webapp has a known exploit, please refer to" + ewarn "http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2449" + fi + elog elog " Please report any bugs to http://bugs.gentoo.org/" elog } |