Checked that our current JIRA 6.0 running on
JRE 1.7.0_13
Apache Tomcat/7.0.29
There is a requirement to fix the security vulnerability for JRE and Tomcat to
JRE 1.7.0_15 or later
Apache Tomcat/7.0.33 or later
Is there a guide in JIRA website how to perform above?
thanks.
contacted Atlassian Support.
1. ok to upgrade JRE
2. Not possible to upgrade tomcat.
It is "possible" to upgrade Tomcat. Just not easily. If you deploy JIRA as a WAR instead of the bundled download you can use the of Tomcat version you like (as long as it is supported).
JRE is just easier to replace.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
i suggest to upgrade jira instance to latest release
check this document
https://confluence.atlassian.com/display/JIRA/JIRA+Security+Advisory+2013-02-21
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.