[SECURITY] Bump karaf.version from 4.2.2 to 4.2.3#1051
[SECURITY] Bump karaf.version from 4.2.2 to 4.2.3#1051kemitix wants to merge 2 commits intoapache:masterfrom kemitix:dependabot/maven/karaf.version-4.2.3
Conversation
Bumps `karaf.version` from 4.2.2 to 4.2.3. Updates `karaf` from 4.2.2 to 4.2.3 Updates `org.apache.karaf.system.core` from 4.2.2 to 4.2.3 Updates `org.apache.karaf.shell.core` from 4.2.2 to 4.2.3 Signed-off-by: dependabot[bot] <support@dependabot.com>
|
Sourced from The GitHub Security Advisory Database.
|
|
The change looks reasonable, but it’s still scary the knock-on consequences of a version bump like this (e.g. what else has bumped version). If you've tested it @kemitix then I'm ok with us merging it. Can you confirm what testing you've done? I need to write up some stuff (commands, debugging tips etc) from last time I fought with versions in karaf dependencies. |
|
@aledsage Needs a little more work. Testing had been pretty basic with just brooklyn-server. I'm seeing a maven enforcer error when I try to build the whole of brooklyn. |
|
@kemitix Can you take a look at this please to see if it is still relevant, and address the comments above if appropriate Thanks |
|
Closed: Superceeded by #1068 |
Bumps
karaf.versionfrom 4.2.2 to 4.2.3.Updates
karaffrom 4.2.2 to 4.2.3Updates
org.apache.karaf.system.corefrom 4.2.2 to 4.2.3Updates
org.apache.karaf.shell.corefrom 4.2.2 to 4.2.3Signed-off-by: dependabot[bot] support@dependabot.com