|
From: Christoph J. <chr...@ma...> - 2025-01-10 15:12:42
|
This is a bug fix release. It contains only few bug fixes and upgrades the MINA library to 2.2.4 since prior versions are vulnerable to RCE: https://www.cve.org/CVERecord?id=CVE-2024-52046 . However, QFJ is not directly affected by this since it does not use the affected ObjectSerializationCodecFactory. Libraries are available on Sonatype Central or https://github.com/quickfix-j/quickfixj/releases/tag/QFJ_RELEASE_2_3_2 Cheers Chris -- Christoph John Software Engineering D +49 241 557080 28 chr...@ma...<mailto:chr...@ma...> [cid:image001.png@01DB6365.43DB64E0] MACD GmbH Oppenhoffallee 103 52066 Aachen, Germany www.macd.com<http://www.macd.com/> [cid:image002.png@01DB6365.43DB64E0]<https://www.linkedin.com/company/macd/> [cid:image003.png@01DB6365.43DB64E0] <https://www.xing.com/pages/macd> Amtsgericht Aachen: HRB 8151 Ust.-Id: DE 813021663 Geschäftsführer: George Macdonald |