• last updated a few seconds ago
Constraints: committers
Constraints: files
Constraints: dates
Web 7.5.23
BZ1393221: Port Tomcat fix for CVE-2016-6796.
BZ1393226: Patch CVE-2016-5018, just in case.
BZ1419145: Hack to force restore of the content type header even when there's no body. Submitted by Aaron Ogburn.
BZ1439225: set encoding for multipart/form-data. Submitted by Aaron Ogburn.
Web 7.5.22.
[BZ-1429017] merge fix
[BZ-1428990] create one-off branch
    • -0
    • +402
  1. … 1177 more files in changeset.
[BZ-1428990] merge fix
[BZ-1428990] create one-off branch
    • -0
    • +143
  1. ./JBOSSWEB_7_5_20_FINAL_BZ-1428990/test/webapps/snoop
  2. … 1176 more files in changeset.
[BZ-1427753] prevent deadlock between org.apache.coyote.http11.Http11NioProcessor.writeEvent and org.apache.tomcat.websocket.server.WsRemoteEndpointImplServer.onWritePossible
[BZ-1427753] one off patch branch
  1. … 1173 more files in changeset.
[BZ-1426611] merge fix
[BZ-1426611] create one-off branch
    • -0
    • +1
  1. … 1173 more files in changeset.
BZ1426471: Remove possible deadlock situation. The non blocking code is only really used by websockets, which has write syncs already, so it is possible to remove it.
BZ1426264: Fix weird error handling in blockingWrite, also remove the immediate close for other errors, and always return a negative value.
BZ1423453: Port code cleanup from Tomcat.
[BZ-1423507] fix improper processor reuse allowing for async thread blocks
  1. … 3 more files in changeset.
[BZ-1423507] create one-off branch
  1. … 1173 more files in changeset.
BZ1410869: Fix sync of AysncContext.complete, and change all syncs from the processor object to the request object (since it is available everywhere).
[JBPAPP-11259] clear request content type after form recycles headers
[JBPAPP-11259] apply CVE-2012-5885, CVE-2012-5886, CVE-2012-5887
[JBPAPP-11259] apply CVE-2012-3546
[JBPAPP-11259] create one off branch
    • -0
    • +329
    • -0
    • +0
    • -0
    • +46
    • -0
    • +543
    • -0
    • +376
  1. … 1533 more files in changeset.
Web 7.5.21.
BZ1410869: Make the async context a separate object from the request, so that it can be recycled to avoid bad side effects.
BZ1399005: Add debug to max swallow input.
Web 7.5.20.
BZ1399014: Fix CVE-2016-6816 request smuggling
BZ1391834: Avoid logging NPE.