-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 4 Jun 2026 13:04:04 CEST Source: tomcat10 Architecture: source Version: 10.1.55-1~deb13u1 Distribution: trixie-security Urgency: medium Maintainer: Debian Java Maintainers Changed-By: Markus Koschany Checksums-Sha1: a8c7afecb614deabc8baead9e30d479d66e22ad4 3101 tomcat10_10.1.55-1~deb13u1.dsc bc23473c452496843f3a602c22fbb247d88b470a 4993964 tomcat10_10.1.55.orig.tar.xz 0db108a8c982765c62e8b0ddeba5df285308bb40 38100 tomcat10_10.1.55-1~deb13u1.debian.tar.xz d5f526a3987489edadff6da27bad06819faed3f4 17530 tomcat10_10.1.55-1~deb13u1_amd64.buildinfo Checksums-Sha256: f8d069d3db5724f6ba50766a6d02cd0a8d13f185de9e48e670bcf1ee9fb5ed6b 3101 tomcat10_10.1.55-1~deb13u1.dsc c6eb11993e4d007167db6914bc6a205a93e7761d7b2569d2665c789071220222 4993964 tomcat10_10.1.55.orig.tar.xz 0d5484974b670d4346f34e7dd9bdd228dcf46dcf6417a45df8dac6f51d46b151 38100 tomcat10_10.1.55-1~deb13u1.debian.tar.xz d0322aaadcd6d53a8e8ced0745173eee9943d176fa368dd5b946eb6b51002dbc 17530 tomcat10_10.1.55-1~deb13u1_amd64.buildinfo Changes: tomcat10 (10.1.55-1~deb13u1) trixie-security; urgency=medium . * New upstream version 10.1.55. - Fixes the following security vulnerabilities identified as CVE-2026-41284, CVE-2026-41293, CVE-2026-42498, CVE-2026-43512, CVE-2026-43513, CVE-2026-43514, CVE-2026-43515, CVE-2026-34500, CVE-2026-34487, CVE-2026-34483, CVE-2026-32990, CVE-2026-29146, CVE-2026-29145, CVE-2026-29129, CVE-2026-25854, CVE-2026-24880 * Refresh the patches. * New build dependency on Bouncy Castle. Files: 5187d46562ae450df0373c544a991490 3101 java optional tomcat10_10.1.55-1~deb13u1.dsc dc5d4bbd4fe635299dc19e4010fcf829 4993964 java optional tomcat10_10.1.55.orig.tar.xz 3dec15e36b8ebd5968feacba8fa949e3 38100 java optional tomcat10_10.1.55-1~deb13u1.debian.tar.xz 31de96b81b7873fda9ba5d6495df4eb7 17530 java optional tomcat10_10.1.55-1~deb13u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQKjBAEBCgCNFiEErPPQiO8y7e9qGoNf2a0UuVE7UeQFAmohW/VfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEFD RjNEMDg4RUYzMkVERUY2QTFBODM1RkQ5QUQxNEI5NTEzQjUxRTQPHGFwb0BkZWJp YW4ub3JnAAoJENmtFLlRO1HkWhYP/3r4h4MRvmV0M3PiUQKALRsMd6jOWQSnw4D7 G9W/l9DE5MhJg5So3edNjoIYP7YP3zpmfmrvdEfFTqcbQexzPRcQVH5JqFvc8k76 7swxeBO8KJmNHhA+pa65TxIo+y/J1sftxU5IHD6tv2x7Z1YwsrbZ9unf+P25lzXx 0VbDZvDEkfANenPqnoa+1a6Iool1GCy1mYDr4zVU1kmjHJmeFhSDIOAXKbpLgHTX KFVtAYSpfibTE+3m0zA/aFuFZ3iXrJhqQrBVSEn4yLuxwZdNDn/4KwYK2tc0AdEd v9O20VwDC/DItzbBAR1TfU8v4xCPaJ5sXzs6MCKK8L4nX3zQV/gjmbuq3fod0FLj gbLPY8iIyoGS3DkGlm83nG+YGCkpcm4eBovHwJmlFaUZGqieQSNixvDod8k+Q/O7 sXA5emVUbSx55gEbUIenOKiTPxGpxt2a7mSzOC5psFnAArOCplVbNapM4oSnNExG wK0OABZg54xUvqX88sDNck4RI+5fg99yie9zQZxP5LXaRag+DbgJgrmcf36PnNhf xWM9QQHaex2G3N9SG/ZFZBJTpAz+Mxb5fNECXvFjK32MSeAJlDpJjjpjprCHorH/ OOOq2CwcHh4mRMuawYtHfO9hImoAIP3HLc1ESoio6vG3yFHA5facvKolGvCfQs6Y 8acI2jMP =5JR4 -----END PGP SIGNATURE-----