Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CVEs in dependency bcprov-jdk18on #832

Open
doggy-dev opened this issue Jun 14, 2024 · 2 comments
Open

CVEs in dependency bcprov-jdk18on #832

doggy-dev opened this issue Jun 14, 2024 · 2 comments

Comments

@doggy-dev
Copy link
Contributor

Hi,

bcprov-jdk18on 1.77 has 4 vulnerabilities:
CVE-2024-34447
CVE-2024-30172
CVE-2024-30171
CVE-2024-29857

An update to version 1.78.1 is needed.

doggy-dev added a commit to doggy-dev/smbj that referenced this issue Jun 14, 2024
update the dependency because of security issues.
hierynomus pushed a commit that referenced this issue Jun 14, 2024
update the dependency because of security issues.
@doggy-dev
Copy link
Contributor Author

Thanks @hierynomus for merging the PR. When can I expect a release of the project?

@dkocher
Copy link

dkocher commented Jun 16, 2024

Thanks @hierynomus for merging the PR. When can I expect a release of the project?

You can always override versions of transient dependencies using dependencyManagement section in your POM without requiring a new release from the library.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants