I'm pleased to announce that tc Server 2.6.3 is now available on vmware.com. This is a security release that updates the runtimes to be based on Tomcat 6.0.35 and 7.0.23. These runtime updates contain workarounds to the hashtable DoS vulnerability as described in [1].
Release Notes - tc Server - Version 2.6.3.RELEASE
Task
TCS-2414 - Update tc Runtime to 6.0.35.A and 7.0.23.A
Please see the release notes on vmware.com for more information: https://www.vmware.com/support/vfabr...-rn-2.6.0.html
[1] http://www.nruns.com/_downloads/advisory28122011.pdf
Release Notes - tc Server - Version 2.6.3.RELEASE
Task
TCS-2414 - Update tc Runtime to 6.0.35.A and 7.0.23.A
Please see the release notes on vmware.com for more information: https://www.vmware.com/support/vfabr...-rn-2.6.0.html
[1] http://www.nruns.com/_downloads/advisory28122011.pdf