When netty's multipart decoders are used local information disclosure can occur
via the local system temporary directory if temporary storing uploads on the
disk is enabled (CVE-2021-21290).
- https://bugs.mageia.org/show_bug.cgi?id=28446
- https://github.com/netty/netty/security/advisories/GHSA-5mcr-gq6c-3hq2
- https://www.cve.org/CVERecord?id=CVE-2021-21290
- 8/core/netty-4.1.51-1.1.mga8
Get the latest Linux and open source security news straight to your inbox.