Known vulnerabilities in netty (Debian package) 1:4.1.7-2+deb9u1

Vendor: Debian
Version: 1:4.1.7-2+deb9u1
Software CPE: cpe:2.3:o:debian:netty_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 7
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting netty (Debian package) version 1:4.1.7-2+deb9u1 netty (Debian package) 1:4.1.7-2+deb9u1 is affected by 7 vulnerabilities: 6 medium, 1 low Critical High Medium Low

Vulnerabilities (7)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU51837 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-21409
CWE-444 Medium
No
No
1:4.1.33-1+deb10u2 01.04.2021 SB2021040116
SB2021040626
SB2021050706
and 32 more
#VU51836 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-21295
CWE-444 Medium
No
No
1:4.1.33-1+deb10u2 01.04.2021 SB2021040115
SB2021040626
SB2021050706
and 26 more
#VU51835 - Cleartext Storage of Sensitive Information
CVE-2021-21290
CWE-312 Low
No
No
1:4.1.33-1+deb10u2 01.04.2021 SB2021020813
SB2021040626
SB2021050706
and 42 more
#VU27513 - Resource exhaustion
CVE-2020-11612
CWE-400 Medium
No
No
1:4.1.33-1+deb10u2 04.05.2020 SB2020050435
SB2020073033
SB2021012210
and 35 more
#VU25598 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2019-20445
CWE-113 Medium
No
No
1:4.1.33-1+deb10u2 26.02.2020 SB2020012928
SB2020022601
SB2020031305
and 33 more
#VU25355 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2019-20444
CWE-444 Medium
No
No
1:4.1.33-1+deb10u2 14.02.2020 SB2020012928
SB2020022601
SB2020031305
and 36 more
#VU25353 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-7238
CWE-444 Medium
No
No
1:4.1.33-1+deb10u2 14.02.2020 SB2020021409
SB2020022521
SB2020022601
and 16 more