Browse Source

HADOOP-18837. Upgrade okio to 3.4.0 due to CVE-2023-3635. (#5914)

Contributed by Rohit Kumar
rohit-kb 2 năm trước cách đây
mục cha
commit
b1ed23654c
2 tập tin đã thay đổi với 2 bổ sung2 xóa
  1. 1 1
      LICENSE-binary
  2. 1 1
      hadoop-project/pom.xml

+ 1 - 1
LICENSE-binary

@@ -242,7 +242,7 @@ com.google.guava:listenablefuture:9999.0-empty-to-avoid-conflict-with-guava
 com.microsoft.azure:azure-storage:7.0.0
 com.nimbusds:nimbus-jose-jwt:9.31
 com.squareup.okhttp3:okhttp:4.10.0
-com.squareup.okio:okio:3.2.0
+com.squareup.okio:okio:3.4.0
 com.zaxxer:HikariCP:4.0.3
 commons-beanutils:commons-beanutils:1.9.4
 commons-cli:commons-cli:1.5.0

+ 1 - 1
hadoop-project/pom.xml

@@ -133,7 +133,7 @@
     <derby.version>10.14.2.0</derby.version>
     <mssql.version>6.2.1.jre7</mssql.version>
     <okhttp3.version>4.10.0</okhttp3.version>
-    <okio.version>3.2.0</okio.version>
+    <okio.version>3.4.0</okio.version>
     <kotlin-stdlib.verion>1.6.20</kotlin-stdlib.verion>
     <kotlin-stdlib-common.version>1.6.20</kotlin-stdlib-common.version>
     <jdom2.version>2.0.6.1</jdom2.version>