[Building Sakai] Security vulnerability in Tomcat

Sila Kayo silakayo at gmail.com
Tue Jan 3 10:24:53 PST 2012


Hi all,
According to this article
http://www.infoq.com/news/2012/01/Hash-Table-Vulnerability,
Tomcat and other major app servers have an easy-to-reproduce denial of
service vulnerability.
The vulnerability got fixed in Tomcat 6 and 7, but Tomcat 5 (which is used
by Sakai) is still vulnerable!!!

Maybe it is time to switch to Tomcat 7 (or at least version 6) ?

Best regards,
Sila Kayo
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://collab.sakaiproject.org/pipermail/sakai-dev/attachments/20120103/66d8f68b/attachment.html 


More information about the sakai-dev mailing list