Source: netty Severity: grave Tags: security This was assigned CVE-2015-2156: http://netty.io/news/2015/05/08/3-9-8-Final-and-3.html
Fix: https://github.com/slandelle/netty/commit/800555417e77029dcf8a31d7de44f27b5a8f79b8.patch In addition to src:netty (3.2.6), there's also src:netty-3.9 (3.9.0) and there was also src:netty3.1 at some point (now removed). Please phase out src:netty towards the updated src:netty-3.9 so that there's only one version around. Cheers, Moritz