Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[fix][security] Bump PostgreSQL version to 42.4.1 #17066

Merged
merged 1 commit into from Aug 13, 2022

Conversation

tjiuming
Copy link
Contributor

@tjiuming tjiuming commented Aug 11, 2022

Motivation

current PostgreSQL client related to CVE-2022031197(GHSA-r38f-c4h4-hqq2), update to newest(https://jdbc.postgresql.org/documentation/changelog.html#version_42.4.1).

Documentation

Check the box below or label this PR directly.

Need to update docs?

  • doc-required
    (Your PR needs to update docs and you will update later)

  • doc-not-needed
    (Please explain why)

  • doc
    (Your PR contains doc changes)

  • doc-complete
    (Docs have been already added)

@tjiuming tjiuming changed the title bump PostgreSQL version [security] bump PostgreSQL version Aug 11, 2022
Copy link
Member

@tisonkun tisonkun left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thank you!

@tjiuming
Copy link
Contributor Author

/pulsarbot run-failure-checks

@github-actions
Copy link

@tjiuming Please provide a correct documentation label for your PR.
Instructions see Pulsar Documentation Label Guide.

@github-actions github-actions bot added doc-label-missing doc-not-needed Your PR changes do not impact docs and removed doc-label-missing labels Aug 11, 2022
@codelipenghui codelipenghui merged commit 16adb61 into apache:master Aug 13, 2022
@codelipenghui codelipenghui changed the title [security] bump PostgreSQL version [fix][security] Bump PostgreSQL version to 42.4.1 Aug 13, 2022
Technoboy- pushed a commit to Technoboy-/pulsar that referenced this pull request Aug 14, 2022
@tjiuming tjiuming deleted the dev/pgsql-cve branch August 14, 2022 11:58
nicoloboschi pushed a commit to datastax/pulsar that referenced this pull request Aug 16, 2022
Technoboy- pushed a commit to merlimat/pulsar that referenced this pull request Aug 16, 2022
@Technoboy- Technoboy- modified the milestones: 2.12.0, 2.11.0 Aug 24, 2022
@mattisonchao
Copy link
Member

Hi @tjiuming
Would you like to push a PR to branch-2.9? I'm not sure if we have any dependency conflict in branch-2.9.

Jason918 pushed a commit that referenced this pull request Sep 4, 2022
@congbobo184
Copy link
Contributor

could you please cherry-pick this PR to branch-2.9? thanks.

congbobo184 pushed a commit that referenced this pull request Nov 17, 2022
@congbobo184 congbobo184 added the cherry-picked/branch-2.9 Archived: 2.9 is end of life label Nov 17, 2022
congbobo184 pushed a commit that referenced this pull request Nov 26, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

8 participants