[
https://issues.apache.org/jira/browse/KAFKA-18820?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Vishal resolved KAFKA-18820.
Fix Version/s: 4.0.0
Resolution: Fixed
Resolving since issue was fixed in 4.0.0.
> CVE-2025-24970
[
https://issues.apache.org/jira/browse/KAFKA-18820?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17931235#comment-17931235
]
Vishal commented on KAFKA-18820:
Okay, thanks!
> CVE-2025-24970 [netty-handler]
> -
[
https://issues.apache.org/jira/browse/KAFKA-18820?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17928662#comment-17928662
]
Vishal edited comment on KAFKA-18820 at 2/20/25 7:01 AM:
-
Hi [~c
[
https://issues.apache.org/jira/browse/KAFKA-18820?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17928662#comment-17928662
]
Vishal commented on KAFKA-18820:
Hi [~chia7712] , you had helped with a similar issue la
[
https://issues.apache.org/jira/browse/KAFKA-18820?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Vishal updated KAFKA-18820:
---
Description:
Netty, an asynchronous, event-driven network application framework, has a
vulnerability starti
Vishal created KAFKA-18820:
--
Summary: CVE-2025-24970 [netty-handler] [4.1.111.Final]
Key: KAFKA-18820
URL: https://issues.apache.org/jira/browse/KAFKA-18820
Project: Kafka
Issue Type: Bug
Affect
[
https://issues.apache.org/jira/browse/KAFKA-17807?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17891345#comment-17891345
]
Vishal commented on KAFKA-17807:
Hi [~chia7712] , thanks for taking the time to look at
[
https://issues.apache.org/jira/browse/KAFKA-17807?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Vishal updated KAFKA-17807:
---
Description:
# jetty-http
[https://nvd.nist.gov/vuln/detail/CVE-2024-6763]
Current jetty-http version: 9.4
[
https://issues.apache.org/jira/browse/KAFKA-17807?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Vishal updated KAFKA-17807:
---
Description:
# jetty-http
[https://nvd.nist.gov/vuln/detail/CVE-2024-6763]
Current jetty-http version: 9.4
[
https://issues.apache.org/jira/browse/KAFKA-17807?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Vishal updated KAFKA-17807:
---
Summary: Update jetty dependency [CVE-2024-6763] (was: Update jetty
dependency)
> Update jetty dependency
[
https://issues.apache.org/jira/browse/KAFKA-17807?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Vishal updated KAFKA-17807:
---
Description:
jetty, used by kafka is vulnerable to
[https://nvd.nist.gov/vuln/detail/CVE-2024-6763].
Fix v
[
https://issues.apache.org/jira/browse/KAFKA-17807?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Vishal reassigned KAFKA-17807:
--
Assignee: (was: Colin McCabe)
Description:
CVE-2024-6763
jetty, used by kafka is vulnerab
Vishal created KAFKA-17807:
--
Summary: Update jetty dependency
Key: KAFKA-17807
URL: https://issues.apache.org/jira/browse/KAFKA-17807
Project: Kafka
Issue Type: Bug
Affects Versions: 3.9.0
13 matches
Mail list logo