Uploaded image for project: 'TinkerPop'
  1. TinkerPop
  2. TINKERPOP-2883

Vulnerability in Netty libraries

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Major
    • Resolution: Not A Problem
    • 3.6.2
    • None
    • None
    • Patch, Important

    Description

      Vulnerability in netty-3.9.9

      Need to update to netty libraries to greater than 4.1.44

      https://nvd.nist.gov/vuln/detail/CVE-2019-20445

      HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a second Content-Length header, or by a Transfer-Encoding header.

      Attachments

        Issue Links

          Activity

            People

              Unassigned Unassigned
              jfoscue Jim Foscue
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: