[
https://issues.apache.org/jira/browse/NIFI-11733?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Matt Burgess updated NIFI-11733:
--------------------------------
Fix Version/s: 2.0.0
1.23.0
(was: 1.latest)
(was: 2.latest)
Resolution: Fixed
Status: Resolved (was: Patch Available)
> Upgrade Netty to 4.1.94
> -----------------------
>
> Key: NIFI-11733
> URL: https://issues.apache.org/jira/browse/NIFI-11733
> Project: Apache NiFi
> Issue Type: Improvement
> Components: Core Framework, Extensions
> Reporter: David Handermann
> Assignee: David Handermann
> Priority: Major
> Labels: dependency-upgrade
> Fix For: 2.0.0, 1.23.0
>
> Time Spent: 0.5h
> Remaining Estimate: 0h
>
> [Netty 4.1.94|https://netty.io/news/2023/06/19/4-1-94-Final.html] includes
> several improvements and bug fixes, including a resolution for
> [CVE-2023-34462|https://github.com/netty/netty/security/advisories/GHSA-6mjq-h674-j845]
> related to potential memory allocation vulnerabilities during a TLS
> handshake with Server Name Indication.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)