CVE-2023-44487- Analysis of vulnerability - Quesnelia

Description

Similar CVE was reported in January for Poppy:

Severity: High
Link:
Package Name: io.netty_netty-codec-http2
Current version 4.1.78.Final // fixed in 4.1.100.Final

Modules impacted:

  1. mod-event-config 2.7.0 Volaris

  2. mod-user-import 3.8.0 Core Platform

  3. mod-data-export-worker 3.2.2 Firebird

Checklist

hide

Activity

Show:

Julian Ladisch May 5, 2024 at 3:32 PM

This is an HTTP/2 issue therefore only Okapi and edge modules can be affected.

All mod-* modules are not affected. This issue can be closed as not affected.

Unresolved

Details

Assignee

Reporter

Priority

RCA Group

TBD

TestRail: Cases

Open TestRail: Cases

TestRail: Runs

Open TestRail: Runs
Created April 17, 2024 at 7:32 PM
Updated May 23, 2024 at 3:42 PM
TestRail: Cases
TestRail: Runs