First published: Thu May 06 2021(Updated: )
Red Hat AMQ Clients enable connecting, sending, and receiving messages over the AMQP 1.0 wire transport protocol to or from AMQ Broker 6 and 7.<br>This update provides various bug fixes and enhancements in addition to the client package versions previously released on Red Hat Enterprise Linux 7 and 8.<br>Security Fix(es):<br><li> netty: Information disclosure via the local system temporary directory (CVE-2021-21290)</li> <li> netty: possible request smuggling in HTTP/2 due missing validation (CVE-2021-21295)</li> <li> netty: Request smuggling via content-length header (CVE-2021-21409)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/qpid-proton | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/python-qpid-proton-docs | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/python3-qpid-proton | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/python3-qpid-proton-debuginfo | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/qpid-proton-c | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/qpid-proton-c-debuginfo | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/qpid-proton-c-devel | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/qpid-proton-c-docs | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/qpid-proton-cpp | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/qpid-proton-cpp-debuginfo | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/qpid-proton-cpp-devel | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/qpid-proton-cpp-docs | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/qpid-proton-debuginfo | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/qpid-proton-debugsource | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/qpid-proton-tests | <0.33.0-8.el8 | 0.33.0-8.el8 |
redhat/qpid-proton | <0.33.0-6.el7_9 | 0.33.0-6.el7_9 |
redhat/python-qpid-proton | <0.33.0-6.el7_9 | 0.33.0-6.el7_9 |
redhat/python-qpid-proton-docs | <0.33.0-6.el7_9 | 0.33.0-6.el7_9 |
redhat/qpid-proton-c | <0.33.0-6.el7_9 | 0.33.0-6.el7_9 |
redhat/qpid-proton-c-devel | <0.33.0-6.el7_9 | 0.33.0-6.el7_9 |
redhat/qpid-proton-c-docs | <0.33.0-6.el7_9 | 0.33.0-6.el7_9 |
redhat/qpid-proton-cpp | <0.33.0-6.el7_9 | 0.33.0-6.el7_9 |
redhat/qpid-proton-cpp-devel | <0.33.0-6.el7_9 | 0.33.0-6.el7_9 |
redhat/qpid-proton-cpp-docs | <0.33.0-6.el7_9 | 0.33.0-6.el7_9 |
redhat/qpid-proton-debuginfo | <0.33.0-6.el7_9 | 0.33.0-6.el7_9 |
redhat/qpid-proton-tests | <0.33.0-6.el7_9 | 0.33.0-6.el7_9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.