Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[WFCORE-6695] CVE-2023-4639 Upgrade Undertow to 2.3.11.Final #5858

Merged
merged 1 commit into from
Feb 15, 2024

Conversation

fl4via
Copy link
Contributor

@fl4via fl4via commented Feb 14, 2024

Jira: https://issues.redhat.com/browse/WFCORE-6695

    Release Notes - Undertow - Version 2.3.11.Final

Bug

  • [UNDERTOW-2304] - Prevent repeating SslConduit.doUnwrap under task thread exhaustion conditions
  • [UNDERTOW-2309] - Possible memory leak in DefaultByteBufferPool
  • [UNDERTOW-2330] - "UT000131: Buffer pool is closed" when server is stopping
  • [UNDERTOW-2337] - Multipart form-data larger than 16KiB is not available through Servlet getParameter API
  • [UNDERTOW-2338] - NullPointerException in io.undertow.servlet.spec.ServletOutputStreamImpl.setWriteListener
  • [UNDERTOW-2342] - CVE-2023-4639 Ignore cookie with improper quotes

Enhancement

  • [UNDERTOW-2331] - RapidResetDDoSUnitTestCase test fails sporadically

@github-actions github-actions bot added the deps-ok Dependencies have been checked, and there are no significant changes label Feb 14, 2024
@wildfly-ci
Copy link

Core -> Full Integration Build 13477 outcome was UNKNOWN using a merge of a56b39e
Summary: Canceled (Error while applying patch; cannot find commit 0d3fc7d in the https://github.com/wildfly/wildfly-core.git repository, possible reason: refs/pull/5858/merge branch was updated and the commit selected for the ... Build time: 00:00:35

@wildfly-ci
Copy link

Core -> Full Integration Build 13237 outcome was UNKNOWN using a merge of a56b39e
Summary: Canceled (Error while applying patch; cannot find commit 0d3fc7d in the https://github.com/wildfly/wildfly-core.git repository, possible reason: refs/pull/5858/merge branch was updated and the commit selected for the ... Build time: 00:00:21

@wildfly-ci
Copy link

Core -> WildFly Preview Integration Build 13300 outcome was UNKNOWN using a merge of a56b39e
Summary: Canceled (Error while applying patch; cannot find commit 0d3fc7d in the https://github.com/wildfly/wildfly-core.git repository, possible reason: refs/pull/5858/merge branch was updated and the commit selected for the ... Build time: 00:00:22

@yersan yersan added the ready-for-merge This PR is ready to be merged and fulfills all requirements label Feb 15, 2024
@yersan yersan merged commit e06f936 into wildfly:main Feb 15, 2024
12 checks passed
@yersan
Copy link
Collaborator

yersan commented Feb 15, 2024

Thanks @fl4via

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
deps-ok Dependencies have been checked, and there are no significant changes ready-for-merge This PR is ready to be merged and fulfills all requirements
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants