Skip to content

Commit 734f7ab

Browse files
authored
HADOOP-18646. Upgrade Netty to 4.1.89.Final to fix CVE-2022-41881 (#5435)
This fixes CVE-2022-41881. This also upgrades io.opencensus dependencies to 0.12.3 Contributed by Aleksandr Nikolaev
1 parent b406060 commit 734f7ab

File tree

2 files changed

+3
-7
lines changed

2 files changed

+3
-7
lines changed

LICENSE-binary

Lines changed: 2 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -289,12 +289,8 @@ io.netty:netty-resolver-dns-classes-macos:4.1.77.Final
289289
io.netty:netty-transport-native-epoll:4.1.77.Final
290290
io.netty:netty-transport-native-kqueue:4.1.77.Final
291291
io.netty:netty-resolver-dns-native-macos:4.1.77.Final
292-
io.opencensus:opencensus-api:0.24.0
293-
io.opencensus:opencensus-contrib-grpc-metrics:0.24.0
294-
io.opentracing:opentracing-api:0.33.0
295-
io.opentracing:opentracing-noop:0.33.0
296-
io.opentracing:opentracing-util:0.33.0
297-
io.perfmark:perfmark-api:0.19.0
292+
io.opencensus:opencensus-api:0.12.3
293+
io.opencensus:opencensus-contrib-grpc-metrics:0.12.3
298294
io.reactivex:rxjava:1.3.8
299295
io.reactivex:rxjava-string:1.1.1
300296
io.reactivex:rxnetty:0.4.20

hadoop-project/pom.xml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -140,7 +140,7 @@
140140
<jna.version>5.2.0</jna.version>
141141
<gson.version>2.9.0</gson.version>
142142
<metrics.version>3.2.4</metrics.version>
143-
<netty4.version>4.1.77.Final</netty4.version>
143+
<netty4.version>4.1.89.Final</netty4.version>
144144
<snappy-java.version>1.1.8.2</snappy-java.version>
145145
<lz4-java.version>1.7.1</lz4-java.version>
146146

0 commit comments

Comments
 (0)