karaf-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "ASF subversion and git services (JIRA)" <j...@apache.org>
Subject [jira] [Commented] (KARAF-5905) Update netty and netty handler versions in Karaf Decanter Cassandra
Date Wed, 13 Mar 2019 15:06:00 GMT

    [ https://issues.apache.org/jira/browse/KARAF-5905?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16791793#comment-16791793
] 

ASF subversion and git services commented on KARAF-5905:
--------------------------------------------------------

Commit 565c49cbb828af858a26d0d29f0a47bf8eb48534 in karaf-decanter's branch refs/heads/master
from Jean-Baptiste Onofré
[ https://gitbox.apache.org/repos/asf?p=karaf-decanter.git;h=565c49c ]

Merge pull request #74 from jbonofre/KARAF-5905

[KARAF-5905] Upgrade to Netty 4.0.37.Final (addressing CVE-2016-4970)

> Update netty and netty handler versions in Karaf Decanter Cassandra
> -------------------------------------------------------------------
>
>                 Key: KARAF-5905
>                 URL: https://issues.apache.org/jira/browse/KARAF-5905
>             Project: Karaf
>          Issue Type: Dependency upgrade
>          Components: decanter
>    Affects Versions: decanter-2.1.0
>            Reporter: Kyle Grady
>            Assignee: Jean-Baptiste Onofré
>            Priority: Minor
>             Fix For: decanter-2.2.0
>
>
> Address vulnerabilities in netty by upgrading the libraries found [here|https://github.com/apache/karaf-decanter/blob/master/assembly/src/main/feature/feature.xml#L309]

> CVE-2016-4970  4.0.33.Final to 4.0.37.Final



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)

Mime
View raw message