Fix CVE-2010-1157.
authormarkt <markt@13f79535-47bb-0310-9956-ffa450edef68>
Wed, 21 Apr 2010 22:11:29 +0000 (22:11 +0000)
committermarkt <markt@13f79535-47bb-0310-9956-ffa450edef68>
Wed, 21 Apr 2010 22:11:29 +0000 (22:11 +0000)
commit043e223837174d2e33d3e8f3bbb667ab158b2b5c
treef26804fd959ea7b4b1ccb9851089aa6b17408aa6
parent73310b6bc4a32c0a9b36a2ebb3b136709b52a61d
Fix CVE-2010-1157.
Prevent possible disclosure of host name or IP address via the HTTP WWW-Authenticate header when using BASIC or DIGEST authentication.

git-svn-id: https://svn.apache.org/repos/asf/tomcat/trunk@936539 13f79535-47bb-0310-9956-ffa450edef68
java/org/apache/catalina/authenticator/AuthenticatorBase.java
java/org/apache/catalina/authenticator/BasicAuthenticator.java
java/org/apache/catalina/authenticator/DigestAuthenticator.java
webapps/docs/realm-howto.xml