Details
-
Improvement
-
Status: Closed
-
Major
-
Resolution: Not A Problem
-
3.6.2
-
None
-
None
-
Patch, Important
Description
Vulnerability in netty-3.9.9
Need to update to netty libraries to greater than 4.1.44
https://nvd.nist.gov/vuln/detail/CVE-2019-20445
HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a second Content-Length header, or by a Transfer-Encoding header.
Attachments
Issue Links
- is a clone of
-
TINKERPOP-2882 Vulnerability in com.hazelcase_hazelcast-3.7.8
- Closed