Просмотр исходного кода

ZOOKEEPER-3794: upgrade netty to address CVE-2020-11612

Latest owasp runs are flagging this. Simple upgrade to the current latest version of netty 4.1.x codeline.

Change-Id: I3defe8a731a2bf22abbd154e7d51054cb62aaa64

Author: Patrick Hunt <phunt@apache.org>

Reviewers: Enrico Olivelli <eolivelli@apache.org>

Closes #1319 from phunt/ZOOKEEPER-3794
Patrick Hunt 5 лет назад
Родитель
Сommit
8a1e0b3643

+ 1 - 1
pom.xml

@@ -353,7 +353,7 @@
     <mockito.version>2.27.0</mockito.version>
     <mockito.version>2.27.0</mockito.version>
     <hamcrest.version>1.3</hamcrest.version>
     <hamcrest.version>1.3</hamcrest.version>
     <commons-cli.version>1.2</commons-cli.version>
     <commons-cli.version>1.2</commons-cli.version>
-    <netty.version>4.1.45.Final</netty.version>
+    <netty.version>4.1.48.Final</netty.version>
     <jetty.version>9.4.24.v20191120</jetty.version>
     <jetty.version>9.4.24.v20191120</jetty.version>
     <jackson.version>2.10.3</jackson.version>
     <jackson.version>2.10.3</jackson.version>
     <json.version>1.1.1</json.version>
     <json.version>1.1.1</json.version>

+ 0 - 0
zookeeper-server/src/main/resources/lib/netty-buffer-4.1.45.Final.LICENSE.txt → zookeeper-server/src/main/resources/lib/netty-buffer-4.1.48.Final.LICENSE.txt


+ 0 - 0
zookeeper-server/src/main/resources/lib/netty-codec-4.1.45.Final.LICENSE.txt → zookeeper-server/src/main/resources/lib/netty-codec-4.1.49.Final.LICENSE.txt


+ 0 - 0
zookeeper-server/src/main/resources/lib/netty-common-4.1.45.Final.LICENSE.txt → zookeeper-server/src/main/resources/lib/netty-common-4.1.48.Final.LICENSE.txt


+ 0 - 0
zookeeper-server/src/main/resources/lib/netty-handler-4.1.45.Final.LICENSE.txt → zookeeper-server/src/main/resources/lib/netty-handler-4.1.48.Final.LICENSE.txt


+ 0 - 0
zookeeper-server/src/main/resources/lib/netty-resolver-4.1.45.Final.LICENSE.txt → zookeeper-server/src/main/resources/lib/netty-resolver-4.1.48.Final.LICENSE.txt


+ 0 - 0
zookeeper-server/src/main/resources/lib/netty-transport-4.1.45.Final.LICENSE.txt → zookeeper-server/src/main/resources/lib/netty-transport-4.1.48.Final.LICENSE.txt


+ 0 - 0
zookeeper-server/src/main/resources/lib/netty-transport-native-epoll-4.1.45.Final.LICENSE.txt → zookeeper-server/src/main/resources/lib/netty-transport-native-epoll-4.1.48.Final.LICENSE.txt


+ 0 - 0
zookeeper-server/src/main/resources/lib/netty-transport-native-unix-common-4.1.45.Final.LICENSE.txt → zookeeper-server/src/main/resources/lib/netty-transport-native-unix-common-4.1.48.Final.LICENSE.txt