You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
[SPARK-48494][BUILD][3.5] Update airlift:aircompressor to 0.27
### What changes were proposed in this pull request?
upgrade airlift:aircompressor from 0.26 to 0.27
For branch 3.5
### Why are the changes needed?
[CVE-2024-36114](https://www.cve.org/CVERecord?id=CVE-2024-36114)
[Decompressors can crash the JVM and leak memory content](GHSA-973x-65j7-xcf4)
The fix airlift/aircompressor@d01ecb7
### Does this PR introduce _any_ user-facing change?
No.
### How was this patch tested?
pass GA
### Was this patch authored or co-authored using generative AI tooling?
No.
Closes#47128 from bjornjorgensen/branch3.5aircompressor0.27.
Authored-by: Bjørn Jørgensen <bjornjorgensen@gmail.com>
Signed-off-by: Kent Yao <yao@apache.org>
0 commit comments