Skip to content

[BP-1.16][FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003#21106

Merged
XComp merged 3 commits intorelease-1.16from
FLINK-29638-1.16
Oct 19, 2022
Merged

[BP-1.16][FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003#21106
XComp merged 3 commits intorelease-1.16from
FLINK-29638-1.16

Conversation

@XComp
Copy link
Contributor

@XComp XComp commented Oct 19, 2022

This PR is a backport of PR #21064 including also the changes related to FLINK-29468 to make backporting of jackson version bumps easier.

@XComp XComp changed the title [FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003 [BP-1.16][FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003 Oct 19, 2022
@XComp
Copy link
Contributor Author

XComp commented Oct 19, 2022

@snuyanzin may you take a look?

@flinkbot
Copy link
Collaborator

flinkbot commented Oct 19, 2022

CI report:

Bot commands The @flinkbot bot supports the following commands:
  • @flinkbot run azure re-run the last Azure build

@snuyanzin
Copy link
Contributor

NOTICE files for Flink kinesis and elastic connector should be updated
for kinesis because of that change 54f81c4
elastic was removed in master
I submitted a PR to that branch #21109 since I cannot update this branch

@XComp
Copy link
Contributor Author

XComp commented Oct 19, 2022

I integrated the changes from PR #21109 into this PR.

@XComp
Copy link
Contributor Author

XComp commented Oct 19, 2022

@flinkbot run azure

@XComp
Copy link
Contributor Author

XComp commented Oct 19, 2022

@flinkbot run azure

2 similar comments
@snuyanzin
Copy link
Contributor

@flinkbot run azure

@snuyanzin
Copy link
Contributor

@flinkbot run azure

@snuyanzin
Copy link
Contributor

it looks like one of the attempts failed during check out (seems like a network issue since check out was more than 1 hour)
https://dev.azure.com/apache-flink/apache-flink/_build/results?buildId=42205&view=logs&j=086353db-23b2-5446-2315-18e660618ef2&t=943aad0b-95d5-56f1-bb28-3b93874898ac&s=7d4e458d-e0e0-5f89-c72d-7371ef61b09b

another attempt failed probably because of OOM (not sure however the process failed with

##[error]Exit code 137 returned from process: file name '/bin/docker', arguments 'exec -i -u 1001  -w /home/agent02_azpcontainer 3913ed78e11abd4db86a6f560a615bca281a46ccb02c7e978833d80e99c1cdc1 /__a/externals/node/bin/node /__w/_temp/containerHandlerInvoker.js'.

https://dev.azure.com/apache-flink/apache-flink/_build/results?buildId=42205&view=logs&j=0c940707-2659-5648-cbe6-a1ad63045f0a&t=075c2716-8010-5565-fe08-3c4bb45824a4&s=ab6e269b-88b2-5ded-2544-4aa5b1124530

after retry it seems ok

@XComp XComp merged commit e0104d5 into release-1.16 Oct 19, 2022
@XComp XComp deleted the FLINK-29638-1.16 branch October 27, 2022 11:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

Comments