From portal-commits at lists.jboss.org Mon Apr 26 22:59:18 2010 Content-Type: multipart/mixed; boundary="===============7912152910031450802==" MIME-Version: 1.0 From: portal-commits at lists.jboss.org To: portal-commits at lists.jboss.org Subject: [portal-commits] JBoss Portal SVN: r13931 - docs/enterprise/tags/Enterprise_Portal_Platform_4_3_GA_CP04/Release_Notes/en-US. Date: Mon, 26 Apr 2010 22:59:17 -0400 Message-ID: <201004270259.o3R2xH0T009620@svn01.web.mwc.hst.phx2.redhat.com> --===============7912152910031450802== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable Author: smumford Date: 2010-04-26 22:59:17 -0400 (Mon, 26 Apr 2010) New Revision: 13931 Modified: docs/enterprise/tags/Enterprise_Portal_Platform_4_3_GA_CP04/Release_Note= s/en-US/Release_Notes.xml Log: JBEPP-321 Edits to JMX security fix text Modified: docs/enterprise/tags/Enterprise_Portal_Platform_4_3_GA_CP04/Relea= se_Notes/en-US/Release_Notes.xml =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D --- docs/enterprise/tags/Enterprise_Portal_Platform_4_3_GA_CP04/Release_Not= es/en-US/Release_Notes.xml 2010-04-27 02:49:47 UTC (rev 13930) +++ docs/enterprise/tags/Enterprise_Portal_Platform_4_3_GA_CP04/Release_Not= es/en-US/Release_Notes.xml 2010-04-27 02:59:17 UTC (rev 13931) @@ -118,18 +118,14 @@ the fix can be applied by removing the following lines fro= m the deployment descriptor (WEB-INF/web.xml) of the JMX Console = WAR. Details of how to apply the fix can be found at http://kbase.redhat.com/f= aq/docs/DOC-30741. Customers are advised to contact Red Hat JBoss S= upport for advice before making these changes. = - - The lines of configuration to remove are: - - = - <http-method>GET<= ;/http-method> - <http-method>POST</http-method> - = + + Red Hat would like to thank Stefano di Paola and Giorgio Fedon of Minde= d Security for responsibly reporting the CVE-2010-0738 issue. + = - - + + =
--===============7912152910031450802==--