Uploaded image for project: 'AMQ Streams'
  1. AMQ Streams
  2. ENTMQST-3314

Productize Kafka 2.6.3 with CVE fixes

XMLWordPrintable

    • Icon: Task Task
    • Resolution: Duplicate
    • Icon: Major Major
    • None
    • None
    • None
    • None

      The fix for the timing attack CVE (ENTMQST-3313) has been been included in the upstream 2.6.3 release.

      Ideally the previously "hacky" 2.6.1 build will be "unhacked" to use a more native gradle build (as we now have a version of Scala 2.12 that works with redhat build version strings).

            Unassigned Unassigned
            tom.n.cooper Thomas Cooper (Inactive)
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: