[
https://issues.apache.org/jira/browse/KARAF-5905?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16791794#comment-16791794
]
ASF subversion and git services commented on KARAF-5905:
--------------------------------------------------------
Commit 565c49cbb828af858a26d0d29f0a47bf8eb48534 in karaf-decanter's branch
refs/heads/master from Jean-Baptiste Onofré
[ https://gitbox.apache.org/repos/asf?p=karaf-decanter.git;h=565c49c ]
Merge pull request #74 from jbonofre/KARAF-5905
[KARAF-5905] Upgrade to Netty 4.0.37.Final (addressing CVE-2016-4970)
> Update netty and netty handler versions in Karaf Decanter Cassandra
> -------------------------------------------------------------------
>
> Key: KARAF-5905
> URL: https://issues.apache.org/jira/browse/KARAF-5905
> Project: Karaf
> Issue Type: Dependency upgrade
> Components: decanter
> Affects Versions: decanter-2.1.0
> Reporter: Kyle Grady
> Assignee: Jean-Baptiste Onofré
> Priority: Minor
> Fix For: decanter-2.2.0
>
>
> Address vulnerabilities in netty by upgrading the libraries found
> [here|https://github.com/apache/karaf-decanter/blob/master/assembly/src/main/feature/feature.xml#L309]
>
> CVE-2016-4970 4.0.33.Final to 4.0.37.Final
--
This message was sent by Atlassian JIRA
(v7.6.3#76005)