Linuxsecurity
SUSE and openSUSE Address CRLF Injection Vulnerability in netty
First seen 19 Dec 2025, 22:56 UTC
•
•95% similarity
•45.6
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
SUSE and openSUSE released updates for netty to address a moderate security issue identified as CVE-2025-67735. The vulnerability involves a lack of URI sanitization in `HttpRequestEncoder`, which can lead to CRLF injection and potential request smuggling. The updates include enhancements and bug fixes, including an update to upstream version 4.1.130.
ThreatCluster AI