Fedora Account System
Red Hat Associate
Red Hat Customer
In Eclipse Jetty versions 10.0.0 thru 10.0.9, and 11.0.0 thru 11.0.9 versions, SslConnection does not release ByteBuffers from configured ByteBufferPool in case of error code paths.
Based on https://github.com/eclipse/jetty.project/issues/8161#issuecomment-1178728623 this issue is not affecting jetty 9.4.x versions.
This issue has been addressed in the following products: Red Hat AMQ Streams 2.3.0 Via RHSA-2023:0189 https://access.redhat.com/errata/RHSA-2023:0189
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2022-2191