[GHSA-wgh7-54f2-x98r] HTTP/2 HPACK integer overflow and buffer allocation#6361
[GHSA-wgh7-54f2-x98r] HTTP/2 HPACK integer overflow and buffer allocation#6361ch8matt wants to merge 1 commit intoch8matt/advisory-improvement-6361from
Conversation
|
Hi there @jmcc0nn3ll! A community member has suggested an improvement to your security advisory. If approved, this change will affect the global advisory listed at github.com/advisories. It will not affect the version listed in your project repository. This change will be reviewed by our Security Curation Team. If you have thoughts or feedback, please share them in a comment here! If this PR has already been closed, you can start a new community contribution for this advisory |
|
👋 Hi @ch8matt, |
Updates
Comments
-> Jetty advisory: GHSA-wgh7-54f2-x98r
-> Fix release notes: https://github.com/eclipse/jetty.project/releases/tag/jetty-9.4.53.v20231009
org.eclipse.jetty:jetty-http >=9.3.0, <=9.4.52
org.eclipse.jetty:jetty-http >=10.0.0, <=10.0.15
org.eclipse.jetty:jetty-http >=11.0.0, <=11.0.15