[Bug 790334] New: tomcat-7.0.logrotate should specify "su root tomcat"
by Red Hat Bugzilla
Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.
Summary: tomcat-7.0.logrotate should specify "su root tomcat"
https://bugzilla.redhat.com/show_bug.cgi?id=790334
Summary: tomcat-7.0.logrotate should specify "su root tomcat"
Product: Fedora
Version: rawhide
Platform: Unspecified
OS/Version: Unspecified
Status: NEW
Severity: unspecified
Priority: unspecified
Component: tomcat
AssignedTo: ivan.afonichev(a)gmail.com
ReportedBy: martin(a)martindengler.com
QAContact: extras-qa(a)fedoraproject.org
CC: akurtako(a)redhat.com,
java-sig-commits(a)lists.fedoraproject.org,
ivan.afonichev(a)gmail.com, kdaniel(a)redhat.com
Classification: Fedora
Story Points: ---
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
Description of problem:
Tomcat's logrotate.d file needs to set "su root tomcat" to suppress logrotate
errors like:
error: skipping "/var/log/tomcat6/catalina.out" because parent directory has
insecure permissions (It's world writable or writable by group which is not
"root") Set "su" directive in config file to tell logrotate which user/group
should be used for rotation.
Version-Release number of selected component (if applicable):
How reproducible:
Always
Steps to Reproduce:
1. Install tomcat
2. Run /etc/cron.daily/logrotate
Actual results:
Expected results:
No errors.
Additional info:
Patch to fix is:
diff --git a/tomcat-7.0.logrotate b/tomcat-7.0.logrotate
index a87b4c0..926928a 100644
--- a/tomcat-7.0.logrotate
+++ b/tomcat-7.0.logrotate
@@ -4,5 +4,6 @@
rotate 52
compress
missingok
+ su root tomcat
create 0644 tomcat tomcat
}
--
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.
11 years, 2 months
[Bug 748074] New: maven-enforcer-plugin is not compatible with maven3
by Red Hat Bugzilla
Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.
Summary: maven-enforcer-plugin is not compatible with maven3
https://bugzilla.redhat.com/show_bug.cgi?id=748074
Summary: maven-enforcer-plugin is not compatible with maven3
Product: Fedora
Version: 16
Platform: All
OS/Version: Linux
Status: NEW
Severity: low
Priority: unspecified
Component: maven-enforcer
AssignedTo: jcapik(a)redhat.com
ReportedBy: orion(a)cora.nwra.com
QAContact: extras-qa(a)fedoraproject.org
CC: java-sig-commits(a)lists.fedoraproject.org,
jcapik(a)redhat.com
Classification: Fedora
Story Points: ---
Type: ---
Description of problem:
While trying to build mybatis-parent that uses maven-enforcer-plugin:
[INFO] --- maven-enforcer-plugin:1.0.1:enforce (enforce-java) @ mybatis-parent
---
[INFO] The requirePluginVersions rule is currently not compatible with Maven3.
[WARNING] Rule 3: org.apache.maven.plugins.enforcer.RequireProperty failed with
message:
[ERROR] You must set the property 'findbugs.onlyAnalyze' in your project pom!
[INFO] ------------------------------------------------------------------------
[INFO] BUILD FAILURE
[INFO] ------------------------------------------------------------------------
[INFO] Total time: 2.996s
[INFO] Finished at: Fri Oct 21 16:25:00 MDT 2011
[INFO] Final Memory: 7M/16M
[INFO] ------------------------------------------------------------------------
[ERROR] Failed to execute goal
org.apache.maven.plugins:maven-enforcer-plugin:1.0.1:enforce (enforce-java) on
project mybatis-parent: Some Enforcer rules have failed. Look above for
specific messages explaining why the rule failed. -> [Help 1]
I can set -Dfindbugs.onlyAnalyze to work around.
Version-Release number of selected component (if applicable):
maven-enforcer-plugin-1.0.1-2.fc16.noarch
--
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.
11 years, 5 months
[Bug 709532] New: CVE-2011-1498 httpcomponents-client: sends Proxy-Authorization header to host when tunneling requests through authenticated proxy server [fedora-15]
by Red Hat Bugzilla
Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.
Summary: CVE-2011-1498 httpcomponents-client: sends Proxy-Authorization header to host when tunneling requests through authenticated proxy server [fedora-15]
https://bugzilla.redhat.com/show_bug.cgi?id=709532
Summary: CVE-2011-1498 httpcomponents-client: sends
Proxy-Authorization header to host when tunneling
requests through authenticated proxy server
[fedora-15]
Product: Fedora
Version: 15
Platform: All
OS/Version: Linux
Status: NEW
Keywords: Security, SecurityTracking
Severity: medium
Priority: medium
Component: httpcomponents-client
AssignedTo: sochotni(a)redhat.com
ReportedBy: vdanen(a)redhat.com
QAContact: extras-qa(a)fedoraproject.org
CC: sochotni(a)redhat.com, sgehwolf(a)redhat.com,
java-sig-commits(a)lists.fedoraproject.org
Blocks: 709531
Classification: Fedora
Story Points: ---
fedora-15 tracking bug for httpcomponents-client: see blocks bug list for full
details of the security issue(s).
This bug is never intended to be made public, please put any public notes
in the 'blocks' bugs.
[bug automatically created by: add-tracking-bugs]
--
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.
11 years, 7 months
[Bug 798263] New: maven-ant-tasks is incompatible with Maven 3
by Red Hat Bugzilla
Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.
Summary: maven-ant-tasks is incompatible with Maven 3
https://bugzilla.redhat.com/show_bug.cgi?id=798263
Summary: maven-ant-tasks is incompatible with Maven 3
Product: Fedora
Version: 17
Platform: Unspecified
OS/Version: Unspecified
Status: NEW
Severity: unspecified
Priority: unspecified
Component: maven-ant-tasks
AssignedTo: orion(a)cora.nwra.com
ReportedBy: mgoldman(a)redhat.com
QAContact: extras-qa(a)fedoraproject.org
CC: orion(a)cora.nwra.com,
java-sig-commits(a)lists.fedoraproject.org
Classification: Fedora
Story Points: ---
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
Description of problem:
While executing an Ant tasks that requires maven I get the following
stacktrace.
Related upstream bug report: http://jira.codehaus.org/browse/MANTTASKS-165
+
CLASSPATH=/usr/share/java/ant/ant-contrib.jar:/usr/share/java/maven-ant-tasks.jar:/usr/share/java/aqute-bnd.jar:/usr/share/java/maven2/maven-profile.jar:/usr/share/java/maven2/maven-project.jar:/usr/share/java/plexus/plexus-component-api.jar:/usr/share/java/maven2/maven-error-diagnostics.jar:/usr/share/java/plexus/classworlds.jar:/usr/share/java/plexus/utils.jar:/usr/share/java/plexus/interpolation.jar:/usr/share/java/maven-wagon/provider-api.jar:/usr/share/java/maven/maven-model.jar:/usr/share/java/maven/maven-artifact.jar:/usr/share/java/maven/maven-core.jar:/usr/share/java/maven/maven-compat.jar:/usr/share/java/maven/maven-settings.jar:/usr/share/java/maven/maven-settings-builder.jar
+ ant
-Djsf.build.home=/home/goldmann/work/glassfish-jsf-impl/BUILD/glassfish-jsf-impl-2.1.7
-Dcontainer.name=tomcat7
Buildfile:
/home/goldmann/work/glassfish-jsf-impl/BUILD/glassfish-jsf-impl-2.1.7/build.xml
BUILD FAILED
/home/goldmann/work/glassfish-jsf-impl/BUILD/glassfish-jsf-impl-2.1.7/build.xml:52:
The following error occurred while executing this line:
/home/goldmann/work/glassfish-jsf-impl/BUILD/glassfish-jsf-impl-2.1.7/common/ant/common.xml:164:
java.lang.NoSuchMethodError:
org.apache.maven.settings.RuntimeInfo.<init>(Lorg/apache/maven/settings/Settings;)V
at
org.apache.maven.artifact.ant.AbstractArtifactTask.loadSettings(AbstractArtifactTask.java:327)
at
org.apache.maven.artifact.ant.AbstractArtifactTask.initSettings(AbstractArtifactTask.java:277)
at
org.apache.maven.artifact.ant.AbstractArtifactTask.execute(AbstractArtifactTask.java:717)
at org.apache.tools.ant.UnknownElement.execute(UnknownElement.java:291)
at sun.reflect.GeneratedMethodAccessor4.invoke(Unknown Source)
at
sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)
at java.lang.reflect.Method.invoke(Method.java:601)
at org.apache.tools.ant.dispatch.DispatchUtils.execute(DispatchUtils.java:106)
at org.apache.tools.ant.Task.perform(Task.java:348)
at org.apache.tools.ant.Target.execute(Target.java:390)
at org.apache.tools.ant.helper.ProjectHelper2.parse(ProjectHelper2.java:169)
at org.apache.tools.ant.taskdefs.ImportTask.importResource(ImportTask.java:225)
at org.apache.tools.ant.taskdefs.ImportTask.execute(ImportTask.java:163)
at org.apache.tools.ant.UnknownElement.execute(UnknownElement.java:291)
at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
at
sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:57)
at
sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)
at java.lang.reflect.Method.invoke(Method.java:601)
at org.apache.tools.ant.dispatch.DispatchUtils.execute(DispatchUtils.java:106)
at org.apache.tools.ant.Task.perform(Task.java:348)
at org.apache.tools.ant.Target.execute(Target.java:390)
at org.apache.tools.ant.helper.ProjectHelper2.parse(ProjectHelper2.java:180)
at org.apache.tools.ant.ProjectHelper.configureProject(ProjectHelper.java:82)
at org.apache.tools.ant.Main.runBuild(Main.java:793)
at org.apache.tools.ant.Main.startAnt(Main.java:217)
at org.apache.tools.ant.launch.Launcher.run(Launcher.java:280)
at org.apache.tools.ant.launch.Launcher.main(Launcher.java:109)
Total time: 1 second
error: Bad exit status from /var/tmp/rpm-tmp.tgb4cx (%build)
Version-Release number of selected component (if applicable):
maven-3.0.4-2.fc17.x86_64 and maven-ant-tasks-2.1.1-9.fc17.noarch
--
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.
11 years, 7 months
[Bug 723276] New: ClassNotFoundException while building with maven-ant-tasks tasks
by Red Hat Bugzilla
Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.
Summary: ClassNotFoundException while building with maven-ant-tasks tasks
https://bugzilla.redhat.com/show_bug.cgi?id=723276
Summary: ClassNotFoundException while building with
maven-ant-tasks tasks
Product: Fedora
Version: rawhide
Platform: noarch
OS/Version: Linux
Status: NEW
Severity: medium
Priority: unspecified
Component: maven-ant-tasks
AssignedTo: orion(a)cora.nwra.com
ReportedBy: guido.grazioli(a)gmail.com
QAContact: extras-qa(a)fedoraproject.org
CC: orion(a)cora.nwra.com,
java-sig-commits(a)lists.fedoraproject.org
Classification: Fedora
Story Points: ---
Description of problem:
Building with ant and maven-ant-tasks throws several ClassNotFoundExceptions
Version-Release number of selected component (if applicable):
maven-ant-tasks-2.1.1-8.fc16.noarch
How reproducible:
Run a build.xml which invokes a <artifact:> task
Actual results:
ClassNotFoundExceptions, ie:
BUILD FAILED
/home/guido/rpmbuild/BUILD/jinput/build.xml:251: The following error occurred
while executing this line:
jar:file:/home/guido/rpmbuild/BUILD/jinput/lib/maven-ant-tasks-2.1.0.jar!/org/apache/maven/artifact/ant/antlib.xml:4:
taskdef A class needed by class org.apache.maven.artifact.ant.DependenciesTask
cannot be found: org/codehaus/classworlds/DuplicateRealmException
Expected results:
Build runs succesfully
Additional info:
I could go a bit ahead in the build, avoiding CNFEs, creating the files:
/etc/ant.d/maven-project (containing "maven2/maven-project")
/etc/ant.d/maven-error-diagnostics ("maven2/maven-error-diagnostics")
/etc/ant.d/plexus-classwords (containing "plexus/classworlds")
/etc/ant.d/plexus-container-default ("plexus/container-default")
/etc/ant.d/plexus-interpolation ("plexus/interpolation")
but at some point i get:
BUILD FAILED
/home/guido/rpmbuild/BUILD/jinput/build.xml:261: Unable to find component:
org.apache.maven.artifact.manager.WagonManager
maven-ant-tasks should also get runtime requires on the packages which provide
those jars
--
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.
11 years, 7 months
[Bug 781678] New: CVE-2011-4461 jetty: hash table collisions CPU usage DoS (oCERT-2011-003) [fedora-all]
by Red Hat Bugzilla
Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.
Summary: CVE-2011-4461 jetty: hash table collisions CPU usage DoS (oCERT-2011-003) [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=781678
Summary: CVE-2011-4461 jetty: hash table collisions CPU usage
DoS (oCERT-2011-003) [fedora-all]
Product: Fedora
Version: 15
Platform: All
OS/Version: Linux
Status: NEW
Keywords: Security, SecurityTracking
Severity: medium
Priority: medium
Component: jetty
AssignedTo: jjohnstn(a)redhat.com
ReportedBy: kseifried(a)redhat.com
QAContact: extras-qa(a)fedoraproject.org
CC: jjohnstn(a)redhat.com, overholt(a)redhat.com,
java-sig-commits(a)lists.fedoraproject.org
Blocks: 781677
Classification: Fedora
Story Points: ---
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=781677
Please note: this issue affects multiple supported versions of Fedora.
Only one tracking bug has been filed; please ensure that it is only closed
when all affected versions are fixed.
[bug automatically created by: add-tracking-bugs]
--
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.
11 years, 7 months