Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Mageia Advisory: 2018-0485 Addresses Moderate Netty DoS Vulnerability

mageia
Calendar Grey December 20, 2018
Dist Mageia Esm H88
Mageia 2021-0293 upgrades netty & jctools to address a potential security vulnerability in OpenSslEngine. Refer to advisory information for further details.
handler/ssl/OpenSslEngine.java in Netty before 4.0.37.Final allows remote attackers to cause a denial of service (infinite loop) (CVE-2016-4970)

Summary

handler/ssl/OpenSslEngine.java in Netty before 4.0.37.Final allows remote attackers to cause a denial of service (infinite loop) (CVE-2016-4970).

References

- https://bugs.mageia.org/show_bug.cgi?id=23974

- https://nvd.nist.gov/vuln/detail/CVE-2016-4970

- https://www.cve.org/CVERecord?id=CVE-2016-4970

Resolution

SRPMS

- 6/core/netty-4.0.42-1.mga6

- 6/core/jctools-1.2.1-1.mga6

Publication date: 20 Dec 2018
URL: https://advisories.mageia.org/MGASA-2018-0485.html
Type: security
CVE: CVE-2016-4970

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here