[GHSA-v6c7-8qx5-8gmp] Deserialization of Untrusted Data in Apache Tomcat
Updates
- References
Comments Add a patch https://github.com/apache/tomcat/commit/e246e5fc13307da0a5d3bbf860d64d97be1c40f8, of which the commit message claims `Clean-up: Remove unnecessary code.
git-svn-id: https://svn.apache.org/repos/asf/tomcat/trunk@1470435 13f79535-47bb-0310-9956-ffa450edef68`
Hey @MarkLee131, not sure I follow on this one. The tag for the commit looks to be on 9.0.0 rather than 7.0.39 which is called out by the advisory. Can you elaborate on how this commit is linked?
👋 This pull request has been marked as stale because it has been open with no activity. You can: comment on the issue or remove the stale label to hold stale off for a while, add the Keep label to hold stale off permanently, or do nothing. If you do nothing this pull request will be closed eventually by the stale bot. Please see CONTRIBUTING.md for more policy details.
👋 This pull request has been marked as stale because it has been open with no activity. You can: comment on the issue or remove the stale label to hold stale off for a while, add the Keep label to hold stale off permanently, or do nothing. If you do nothing this pull request will be closed eventually by the stale bot. Please see CONTRIBUTING.md for more policy details.