This update for netty, netty-tcnative fixes the following issues:
ClientHello causes fallback to default SslContext and allows for SNI routing and
mTLS requirement bypass (bsc#1276420).ClientHellorecords can trigger quadratic pre-handshake reassembly in default SNI parsing
(bsc#1276421).MqttEncoder allows for null-byte injection, topic hijacking, and ACL
bypassing (bsc#1277243).nextUpdate field in OCSP responses leads to silent validation bypass (bsc#1281431).SmtpResponseDecoder leads to memory exhaustion and a
DoS (bsc#1281432).RedisArrayAggregator nested RESP headers can lead
to denial of service (bsc#1281433).MqttDecoder can lead to excessive resource consumption and a DoS
(bsc#1281434).Changes for netty:
Changes for netty-tcnative: