You are viewing a plain text version of this content. The canonical link for it is here.
Posted to jira@kafka.apache.org by "Brendan Ribera (Jira)" <ji...@apache.org> on 2023/01/03 21:36:00 UTC

[jira] [Updated] (KAFKA-14564) Upgrade Netty to 4.1.86.Final to fix CVEs

     [ https://issues.apache.org/jira/browse/KAFKA-14564?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Brendan Ribera updated KAFKA-14564:
-----------------------------------
    Summary: Upgrade Netty to 4.1.86.Final to fix CVEs  (was: Upgrade Netty to 4.1.86 to fix CVEs)

> Upgrade Netty to 4.1.86.Final to fix CVEs
> -----------------------------------------
>
>                 Key: KAFKA-14564
>                 URL: https://issues.apache.org/jira/browse/KAFKA-14564
>             Project: Kafka
>          Issue Type: Bug
>          Components: core
>    Affects Versions: 3.3.1
>            Reporter: Brendan Ribera
>            Priority: Major
>
> 4.1.86 fixes two CVEs:
>  * [https://nvd.nist.gov/vuln/detail/CVE-2022-41881]
>  * [https://nvd.nist.gov/vuln/detail/CVE-2022-41915]
>  



--
This message was sent by Atlassian Jira
(v8.20.10#820010)