RHSA-2021:0943: Moderate: Red Hat build of Eclipse Vert.x 4.0.3 security update
This release of Red Hat build of Eclipse Vert.x 4.0.3 includes security updates, bug fixes, and enhancements. For more information, see the release notes listed in the References section.Security Fix(es): netty: Information disclosure via the local system temporary directory (CVE-2021-21290) netty: possible request smuggling in HTTP/2 due missing validation (CVE-2021-21295) For more details about the security issues and their impact, the CVSS score, acknowledgements, and other related information, see the CVE pages listed in the References section.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Red Hat build of Eclipse Vert.xto a version that resolves this vulnerability.Fixed in 4.0.3
Event History
Frequently Asked Questions
What vulnerabilities are addressed in RHSA-2021:0943?
RHSA-2021:0943 addresses information disclosure vulnerabilities in the netty component of Eclipse Vert.x.
How do I fix RHSA-2021:0943?
To fix RHSA-2021:0943, you should update to the latest version of the Red Hat build of Eclipse Vert.x provided in the advisory.
What is the severity of RHSA-2021:0943?
The severity of RHSA-2021:0943 is classified as moderate.
What software does RHSA-2021:0943 affect?
RHSA-2021:0943 affects the Red Hat build of Eclipse Vert.x version 4.0.3.
Is there a workaround for RHSA-2021:0943?
No specific workaround is provided for RHSA-2021:0943; the recommended action is to apply the security update.