Skip to content

BigQuery is is using a vulnerable transitive dependency apache:arrow:15.0.2 (CVE-2024-52338) #3862

@Fabio1988

Description

@Fabio1988

Environment details

  1. BigQuery 2.53.0

Latest BigQuery uses apache:arrow:15.0.2. This version is affected by CVE-2024-52338

Pls bump the version of this dependency to fix vulnerability.

Metadata

Metadata

Assignees

Labels

priority: p2Moderately-important priority. Fix may not be included in next release.type: bugError or flaw in code with unintended results or allowing sub-optimal usage patterns.

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions