This is an automated email from the ASF dual-hosted git repository.

dockerzhang pushed a commit to branch master
in repository https://gitbox.apache.org/repos/asf/inlong.git


The following commit(s) were added to refs/heads/master by this push:
     new 08f7b3955 [INLONG-5789][CVE] Bump hadoop from 2.10.1 to 2.10.2 to fix 
injection vulnerability (#5790)
08f7b3955 is described below

commit 08f7b3955c5c4bca815dcb50e2810ddcba04727c
Author: Charles Zhang <dockerzh...@apache.org>
AuthorDate: Tue Sep 6 14:56:54 2022 +0800

    [INLONG-5789][CVE] Bump hadoop from 2.10.1 to 2.10.2 to fix injection 
vulnerability (#5790)
---
 licenses/inlong-manager/LICENSE         | 16 ++++++++--------
 licenses/inlong-sort-connectors/LICENSE | 10 +++++-----
 pom.xml                                 |  2 +-
 3 files changed, 14 insertions(+), 14 deletions(-)

diff --git a/licenses/inlong-manager/LICENSE b/licenses/inlong-manager/LICENSE
index 4b510f708..f47406bfe 100644
--- a/licenses/inlong-manager/LICENSE
+++ b/licenses/inlong-manager/LICENSE
@@ -614,14 +614,14 @@ The text of each license is also included at 
licenses/LICENSE-[project].txt.
   org.datanucleus:datanucleus-core:4.1.17 - DataNucleus Core 
(https://github.com/datanucleus/datanucleus-core/tree/datanucleus-core-4.1.17), 
(Apache License 2.0)
   org.datanucleus:datanucleus-rdbms:4.1.19 - DataNucleus RDBMS plugin 
(https://github.com/datanucleus/datanucleus-rdbms/tree/datanucleus-rdbms-4.1.19),
 (Apache License 2.0)
   com.vlkan:flatbuffers:1.2.0-3f79e055 - FlatBuffers Java API 
(https://github.com/vy/flatbuffers), (Apache License (v2.0))
-  org.apache.hadoop:hadoop-annotations:2.10.1 - Apache Hadoop Annotations 
(https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-common-project/hadoop-annotations),
 (Apache License, Version 2.0)
-  org.apache.hadoop:hadoop-auth:2.10.1 - Apache Hadoop Auth 
(https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-common-project/hadoop-auth),
 (Apache License, Version 2.0)
-  org.apache.hadoop:hadoop-common:2.10.1 - Apache Hadoop Common 
(https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-common-project/hadoop-common),
 (Apache License, Version 2.0)
-  org.apache.hadoop:hadoop-hdfs:2.10.1 - Apache Hadoop HDFS 
(https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-hdfs-project/hadoop-hdfs),
 (Apache License, Version 2.0)
-  org.apache.hadoop:hadoop-hdfs-client:2.10.1 - Apache Hadoop HDFS Client 
(https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-hdfs-project/hadoop-hdfs-client),
 (Apache License, Version 2.0)
-  org.apache.hadoop:hadoop-mapreduce-client-core:2.10.1 - Apache Hadoop 
MapReduce Client Core 
(https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-mapreduce-project/hadoop-mapreduce-client/hadoop-mapreduce-client-core),
 (Apache License, Version 2.0)
-  org.apache.hadoop:hadoop-yarn-api:2.10.1 - Apache Hadoop YARN API 
(https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-api),
 (Apache License, Version 2.0)
-  org.apache.hadoop:hadoop-yarn-client:2.10.1 - Apache Hadoop YARN Client 
(https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-client),
 (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-annotations:2.10.2 - Apache Hadoop Annotations 
(https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-common-project/hadoop-annotations),
 (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-auth:2.10.2 - Apache Hadoop Auth 
(https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-common-project/hadoop-auth),
 (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-common:2.10.2 - Apache Hadoop Common 
(https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-common-project/hadoop-common),
 (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-hdfs:2.10.2 - Apache Hadoop HDFS 
(https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-hdfs-project/hadoop-hdfs),
 (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-hdfs-client:2.10.2 - Apache Hadoop HDFS Client 
(https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-hdfs-project/hadoop-hdfs-client),
 (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-mapreduce-client-core:2.10.2 - Apache Hadoop 
MapReduce Client Core 
(https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-mapreduce-project/hadoop-mapreduce-client/hadoop-mapreduce-client-core),
 (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-yarn-api:2.10.2 - Apache Hadoop YARN API 
(https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-api),
 (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-yarn-client:2.10.2 - Apache Hadoop YARN Client 
(https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-client),
 (Apache License, Version 2.0)
   com.carrotsearch:hppc:0.7.2 - HPPC Collections 
(https://github.com/carrotsearch/hppc/tree/0.7.2), (The Apache Software 
License, Version 2.0)
   org.apache.iceberg:iceberg-api:0.13.1 - Apace Iceberg API 
(https://https://iceberg.apache.org/), (Apache License, Version 2.0)
   org.apache.iceberg:iceberg-bundled-guava:0.13.1 - Apache Iceberg 
Bundled-guava (https://iceberg.apache.org), (The Apache Software License, 
Version 2.0)
diff --git a/licenses/inlong-sort-connectors/LICENSE 
b/licenses/inlong-sort-connectors/LICENSE
index 7c823b0af..faa4d7a45 100644
--- a/licenses/inlong-sort-connectors/LICENSE
+++ b/licenses/inlong-sort-connectors/LICENSE
@@ -793,12 +793,12 @@ The text of each license is also included at 
licenses/LICENSE-[project].txt.
   org.datanucleus:datanucleus-core:4.1.17 - DataNucleus Core 
(https://github.com/datanucleus/datanucleus-core/tree/datanucleus-core-4.1.17), 
(Apache License 2.0)
   org.apache.hadoop:hadoop-annotations:3.1.0 - Apache Hadoop Annotations 
(https://github.com/apache/hadoop/tree/branch-3.1.0/hadoop-common-project/hadoop-annotations),
 (Apache License, Version 2.0)
   org.apache.hadoop:hadoop-auth:3.1.0 - Apache Hadoop Auth 
(https://github.com/apache/hadoop/tree/branch-3.1.0/hadoop-common-project/hadoop-auth),
 (Apache License, Version 2.0)
-  org.apache.hadoop:hadoop-common:2.10.1 - Apache Hadoop Common 
(https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-common-project/hadoop-common),
 (Apache License, Version 2.0)
-  org.apache.hadoop:hadoop-hdfs:2.10.1 - Apache Hadoop HDFS 
(https://github.com/apache/hadoop), (Apache License, Version 2.0)
-  org.apache.hadoop:hadoop-hdfs-client:2.10.1 - Apache Hadoop HDFS Client 
(https://github.com/apache/hadoop), (Apache License, Version 2.0) 
-  org.apache.hadoop:hadoop-mapreduce-client-core:2.10.1 - Apache Hadoop 
MapReduce Core 
(https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-mapreduce-project/hadoop-mapreduce-client/hadoop-mapreduce-client-core),
 (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-common:2.10.2 - Apache Hadoop Common 
(https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-common-project/hadoop-common),
 (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-hdfs:2.10.2 - Apache Hadoop HDFS 
(https://github.com/apache/hadoop), (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-hdfs-client:2.10.2 - Apache Hadoop HDFS Client 
(https://github.com/apache/hadoop), (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-mapreduce-client-core:2.10.2 - Apache Hadoop 
MapReduce Core 
(https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-mapreduce-project/hadoop-mapreduce-client/hadoop-mapreduce-client-core),
 (Apache License, Version 2.0)
   org.apache.hadoop:hadoop-yarn-api:3.1.0 - Apache Hadoop YARN API 
(https://github.com/apache/hadoop/tree/branch-3.1.0/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-api),
 (Apache License, Version 2.0)
-  org.apache.hadoop:hadoop-yarn-client:2.10.1 - Apache Hadoop YARN Client 
(https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-client),
 (Apache License, Version 2.0)
+  org.apache.hadoop:hadoop-yarn-client:2.10.2 - Apache Hadoop YARN Client 
(https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-client),
 (Apache License, Version 2.0)
   org.apache.hadoop:hadoop-yarn-common:3.1.0 - Apache Hadoop YARN Common 
(https://github.com/apache/hadoop/tree/branch-3.1.0/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-common),
 (Apache License, Version 2.0)
   org.apache.hadoop:hadoop-yarn-registry:3.1.0 - Apache Hadoop YARN Registry 
(https://github.com/apache/hadoop/tree/branch-3.1.0/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-registry),
 (Apache License, Version 2.0)
   com.carrotsearch:hppc:0.7.1 - HPPC Collections 
(https://github.com/carrotsearch/hppc/tree/0.7.1), (The Apache Software 
License, Version 2.0)
diff --git a/pom.xml b/pom.xml
index c6cc1b112..c8a1a6743 100644
--- a/pom.xml
+++ b/pom.xml
@@ -145,7 +145,7 @@
         <h2.mysql.version>2.0.0</h2.mysql.version>
         <debezium.version>1.8.0.Final</debezium.version>
         <rocksdb.version>6.14.6</rocksdb.version>
-        <hadoop.version>2.10.1</hadoop.version>
+        <hadoop.version>2.10.2</hadoop.version>
         <postgresql.version>42.3.4</postgresql.version>
         <oracle.jdbc.version>19.3.0.0</oracle.jdbc.version>
         <mysql.jdbc.version>8.0.21</mysql.jdbc.version>

Reply via email to