CVE-2023-44487 for WildFly

330 views
Skip to first unread message

Madhava Alampally

unread,
Oct 17, 2023, 7:53:11 AM10/17/23
to WildFly
Hi Team, 

Can someone confirm whether WildFly is effected with the vulnerability CVE-2023-44487 or not. 

As per configuration, HTTP2 is enabled by default. But when we login to application and check the http protocol through Crome Network Tab, it's showing the protocol as HTTP 1.1

Curious to know how WildFly picks the protocol version. 

Thanks & Regards,
Madhava

JD

unread,
Oct 17, 2023, 11:04:17 AM10/17/23
to WildFly
You will need to upgrade to Wildfly 30 Final, which should be available next week.

I would suppose the browser is picking the protocol, not Wildfly. 

Madhava Alampally

unread,
Oct 17, 2023, 11:10:34 AM10/17/23
to JD, WildFly
Thank you JD for the prompt response on this. 

Thanks & Regards
Madhava

--
You received this message because you are subscribed to a topic in the Google Groups "WildFly" group.
To unsubscribe from this topic, visit https://groups.google.com/d/topic/wildfly/lG7jAvV-Ie4/unsubscribe.
To unsubscribe from this group and all its topics, send an email to wildfly+u...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/wildfly/ef25d9ec-3d3e-4093-af0a-cb7cceb0d603n%40googlegroups.com.

This electronic communication and the information and any files transmitted with it, or attached to it, are confidential and are intended solely for the use of the individual or entity to whom it is addressed and may contain information that is confidential, legally privileged, protected by privacy laws, or otherwise restricted from disclosure to anyone else. If you are not the intended recipient or the person responsible for delivering the e-mail to the intended recipient, you are hereby notified that any use, copying, distributing, dissemination, forwarding, printing, or copying of this e-mail is strictly prohibited. If you received this e-mail in error, please return the e-mail to the sender, delete it from your computer, and destroy any printed copy of it.

MK Wong

unread,
Oct 30, 2023, 10:20:13 AM10/30/23
to WildFly
Dear All,

We are using WildFly 26.
Is it possible to fix this issue ("Rapid Reset" security issue)  without upgrade to WildFly 30?
Thanks.

Regards,
MK Wong

Madhava Alampally 在 2023年10月17日 星期二晚上11:10:34 [UTC+8] 的信中寫道:
Reply all
Reply to author
Forward
0 new messages