Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[BP-1.15][FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003 #21107

Merged
merged 3 commits into from Oct 19, 2022

Conversation

XComp
Copy link
Contributor

@XComp XComp commented Oct 19, 2022

This PR is a backport of PR #21064 including also the changes related to FLINK-29468 to make backporting of jackson version bumps easier.

@XComp XComp changed the title [FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003 [BP-1.15][FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003 Oct 19, 2022
@XComp
Copy link
Contributor Author

XComp commented Oct 19, 2022

@snuyanzin may you take a look?

@flinkbot
Copy link
Collaborator

flinkbot commented Oct 19, 2022

CI report:

Bot commands The @flinkbot bot supports the following commands:
  • @flinkbot run azure re-run the last Azure build

@snuyanzin
Copy link
Contributor

snuyanzin commented Oct 19, 2022

NOTICE files for Flink kinesis and elastic connector should be updated
for kinesis because of that change 54f81c4
elastic was removed in master
I submitted a PR to that branch #21108 since I cannot update this branch

@XComp
Copy link
Contributor Author

XComp commented Oct 19, 2022

I integrated the changes from PR #21109 into this PR. I missed that you created a separate PR #21108. But the changes are the same. This this should be alright.

@XComp XComp merged commit c500e97 into release-1.15 Oct 19, 2022
@XComp XComp deleted the FLINK-29638-1.15 branch October 27, 2022 11:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
3 participants