Uploaded image for project: 'Jira Data Center'
  1. Jira Data Center
  2. JRASERVER-64394

Upgrade Tomcat to the version 8.5.29

    XMLWordPrintable

Details

    • 7.03
    • 15
    • Severity 1 - Critical
    • 34
    • Hide
      Atlassian Update – 1 October 2018

      Hello everyone,

      Just to clarify.
      Jira 7.6.9 will be using Tomcat version 8.5.29.
      Jira 7.12.3 and up will be on version 8.5.32. See JRASERVER-68058

      The current ticket is marked resolved because at least one version got their changes released.

      Cheers.

      Piotr Suwała
      Jira Server Bugfix Dev

      Show
      Atlassian Update – 1 October 2018 Hello everyone, Just to clarify. Jira 7.6.9 will be using Tomcat version 8.5.29 . Jira 7.12.3 and up will be on version 8.5.32 . See JRASERVER-68058 The current ticket is marked resolved because at least one version got their changes released. Cheers. Piotr Suwała Jira Server Bugfix Dev

    Description

      Current version of Tomcat 8.5.6 bundled with JIRA 7.3.x is vulnerable to https://tomcat.apache.org/security-8.html#Fixed_in_Apache_Tomcat_8.5.9.

      Customer would like the Tomcat to be upgraded to the latest version available as their client is no longer willing to run JIRA without having the tomcat patched with the latest security updates.

      Questions:

      1. Is it in the road map to include latest Tomcat? If yes, from which version onwards?
      2. Is there any steps which customer can follow to upgrade the bundled Tomcat from 8.5.6 to 8.5.12?

      Attachments

        Issue Links

          Activity

            People

              psuwala ΞΔ (Inactive)
              schew@atlassian.com Sean Chew (Inactive)
              Votes:
              19 Vote for this issue
              Watchers:
              35 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: