Uploaded image for project: 'Jira Data Center'
  1. Jira Data Center
  2. JRASERVER-71321

Upgrade the bundled version of Apache Tomcat to 8.5.57

    XMLWordPrintable

Details

    Description

      Issue Summary

      The recently disclosed vulnerability regarding Apache Tomcat

      affects the following versions:

      Apache Tomcat 8.x from 8.5.1 to 8.5.56
      Apache Tomcat 9.x from 9.0.0.M5 to 9.0.36
      Apache Tomcat 10.x from 10.0.0-M1 to 10.0.0-M6

      Additionally, the following disclosed vulnerability regarding Tomcat:

      affects the following versions:

      Apache Tomcat 7.x from 7.0.27 to 7.0.104
      Apache Tomcat 8.x from 8.5.1 to 8.5.56
      Apache Tomcat 9.x from 9.0.0.M5 to 9.0.36
      Apache Tomcat 10.x from 10.0.0-M1 to 10.0.0-M6

      We should bundle a more recent version of Tomcat so that Jira is not affected by this in the future.

      Steps to Reproduce

      Expected Results

      • Not applicable.

      Actual Results

      • Not applicable.

      Workaround

      Attachments

        Issue Links

          Activity

            People

              pcegla Pawel Cegla
              gperes@atlassian.com Gregory Peres (Inactive)
              Votes:
              15 Vote for this issue
              Watchers:
              29 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: