Skip to content

[fix][sec] Fix transitive critical CVEs in file-system tiered storage#19957

Merged
nicoloboschi merged 2 commits into
apache:masterfrom
nicoloboschi:upgrade-hadoop
Mar 29, 2023
Merged

[fix][sec] Fix transitive critical CVEs in file-system tiered storage#19957
nicoloboschi merged 2 commits into
apache:masterfrom
nicoloboschi:upgrade-hadoop

Conversation

@nicoloboschi

Copy link
Copy Markdown
Contributor

Motivation

Currently the file-system tiered storages brings in the following CVEs:

Modifications

All the above are depending from hadoop.

Verifying this change

  • Make sure that the change passes the CI checks.

Documentation

  • doc
  • doc-required
  • doc-not-needed
  • doc-complete

Matching PR in forked repository

@tisonkun tisonkun left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Good to go.

@nicoloboschi

Copy link
Copy Markdown
Contributor Author

/pulsarbot rerun-failure-checks

@codecov-commenter

codecov-commenter commented Mar 29, 2023

Copy link
Copy Markdown

Codecov Report

All modified and coverable lines are covered by tests ✅

Project coverage is 72.81%. Comparing base (7a99e74) to head (7f86e70).
Report is 1744 commits behind head on master.

Additional details and impacted files

Impacted file tree graph

@@              Coverage Diff              @@
##             master   #19957       +/-   ##
=============================================
+ Coverage     31.88%   72.81%   +40.93%     
- Complexity     6421    31484    +25063     
=============================================
  Files          1682     1859      +177     
  Lines        127354   136851     +9497     
  Branches      13892    15050     +1158     
=============================================
+ Hits          40601    99653    +59052     
+ Misses        80714    29275    -51439     
- Partials       6039     7923     +1884     
Flag Coverage Δ
inttests 24.39% <ø> (-0.12%) ⬇️
systests 25.10% <ø> (+0.01%) ⬆️
unittests 72.08% <ø> (+54.81%) ⬆️

Flags with carried forward coverage won't be shown. Click here to find out more.

see 1466 files with indirect coverage changes

@michaeljmarshall

Copy link
Copy Markdown
Member

As discussed on the mailing list https://lists.apache.org/thread/w4jzk27qhtosgsz7l9bmhf1t7o9mxjhp, there is no plan to release 2.9.6, so I am going to remove the release/2.9.6 label

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants