This is an automated email from the ASF dual-hosted git repository. dockerzhang pushed a commit to branch master in repository https://gitbox.apache.org/repos/asf/inlong.git
The following commit(s) were added to refs/heads/master by this push: new 08f7b3955 [INLONG-5789][CVE] Bump hadoop from 2.10.1 to 2.10.2 to fix injection vulnerability (#5790) 08f7b3955 is described below commit 08f7b3955c5c4bca815dcb50e2810ddcba04727c Author: Charles Zhang <dockerzh...@apache.org> AuthorDate: Tue Sep 6 14:56:54 2022 +0800 [INLONG-5789][CVE] Bump hadoop from 2.10.1 to 2.10.2 to fix injection vulnerability (#5790) --- licenses/inlong-manager/LICENSE | 16 ++++++++-------- licenses/inlong-sort-connectors/LICENSE | 10 +++++----- pom.xml | 2 +- 3 files changed, 14 insertions(+), 14 deletions(-) diff --git a/licenses/inlong-manager/LICENSE b/licenses/inlong-manager/LICENSE index 4b510f708..f47406bfe 100644 --- a/licenses/inlong-manager/LICENSE +++ b/licenses/inlong-manager/LICENSE @@ -614,14 +614,14 @@ The text of each license is also included at licenses/LICENSE-[project].txt. org.datanucleus:datanucleus-core:4.1.17 - DataNucleus Core (https://github.com/datanucleus/datanucleus-core/tree/datanucleus-core-4.1.17), (Apache License 2.0) org.datanucleus:datanucleus-rdbms:4.1.19 - DataNucleus RDBMS plugin (https://github.com/datanucleus/datanucleus-rdbms/tree/datanucleus-rdbms-4.1.19), (Apache License 2.0) com.vlkan:flatbuffers:1.2.0-3f79e055 - FlatBuffers Java API (https://github.com/vy/flatbuffers), (Apache License (v2.0)) - org.apache.hadoop:hadoop-annotations:2.10.1 - Apache Hadoop Annotations (https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-common-project/hadoop-annotations), (Apache License, Version 2.0) - org.apache.hadoop:hadoop-auth:2.10.1 - Apache Hadoop Auth (https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-common-project/hadoop-auth), (Apache License, Version 2.0) - org.apache.hadoop:hadoop-common:2.10.1 - Apache Hadoop Common (https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-common-project/hadoop-common), (Apache License, Version 2.0) - org.apache.hadoop:hadoop-hdfs:2.10.1 - Apache Hadoop HDFS (https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-hdfs-project/hadoop-hdfs), (Apache License, Version 2.0) - org.apache.hadoop:hadoop-hdfs-client:2.10.1 - Apache Hadoop HDFS Client (https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-hdfs-project/hadoop-hdfs-client), (Apache License, Version 2.0) - org.apache.hadoop:hadoop-mapreduce-client-core:2.10.1 - Apache Hadoop MapReduce Client Core (https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-mapreduce-project/hadoop-mapreduce-client/hadoop-mapreduce-client-core), (Apache License, Version 2.0) - org.apache.hadoop:hadoop-yarn-api:2.10.1 - Apache Hadoop YARN API (https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-api), (Apache License, Version 2.0) - org.apache.hadoop:hadoop-yarn-client:2.10.1 - Apache Hadoop YARN Client (https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-client), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-annotations:2.10.2 - Apache Hadoop Annotations (https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-common-project/hadoop-annotations), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-auth:2.10.2 - Apache Hadoop Auth (https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-common-project/hadoop-auth), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-common:2.10.2 - Apache Hadoop Common (https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-common-project/hadoop-common), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-hdfs:2.10.2 - Apache Hadoop HDFS (https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-hdfs-project/hadoop-hdfs), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-hdfs-client:2.10.2 - Apache Hadoop HDFS Client (https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-hdfs-project/hadoop-hdfs-client), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-mapreduce-client-core:2.10.2 - Apache Hadoop MapReduce Client Core (https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-mapreduce-project/hadoop-mapreduce-client/hadoop-mapreduce-client-core), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-yarn-api:2.10.2 - Apache Hadoop YARN API (https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-api), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-yarn-client:2.10.2 - Apache Hadoop YARN Client (https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-client), (Apache License, Version 2.0) com.carrotsearch:hppc:0.7.2 - HPPC Collections (https://github.com/carrotsearch/hppc/tree/0.7.2), (The Apache Software License, Version 2.0) org.apache.iceberg:iceberg-api:0.13.1 - Apace Iceberg API (https://https://iceberg.apache.org/), (Apache License, Version 2.0) org.apache.iceberg:iceberg-bundled-guava:0.13.1 - Apache Iceberg Bundled-guava (https://iceberg.apache.org), (The Apache Software License, Version 2.0) diff --git a/licenses/inlong-sort-connectors/LICENSE b/licenses/inlong-sort-connectors/LICENSE index 7c823b0af..faa4d7a45 100644 --- a/licenses/inlong-sort-connectors/LICENSE +++ b/licenses/inlong-sort-connectors/LICENSE @@ -793,12 +793,12 @@ The text of each license is also included at licenses/LICENSE-[project].txt. org.datanucleus:datanucleus-core:4.1.17 - DataNucleus Core (https://github.com/datanucleus/datanucleus-core/tree/datanucleus-core-4.1.17), (Apache License 2.0) org.apache.hadoop:hadoop-annotations:3.1.0 - Apache Hadoop Annotations (https://github.com/apache/hadoop/tree/branch-3.1.0/hadoop-common-project/hadoop-annotations), (Apache License, Version 2.0) org.apache.hadoop:hadoop-auth:3.1.0 - Apache Hadoop Auth (https://github.com/apache/hadoop/tree/branch-3.1.0/hadoop-common-project/hadoop-auth), (Apache License, Version 2.0) - org.apache.hadoop:hadoop-common:2.10.1 - Apache Hadoop Common (https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-common-project/hadoop-common), (Apache License, Version 2.0) - org.apache.hadoop:hadoop-hdfs:2.10.1 - Apache Hadoop HDFS (https://github.com/apache/hadoop), (Apache License, Version 2.0) - org.apache.hadoop:hadoop-hdfs-client:2.10.1 - Apache Hadoop HDFS Client (https://github.com/apache/hadoop), (Apache License, Version 2.0) - org.apache.hadoop:hadoop-mapreduce-client-core:2.10.1 - Apache Hadoop MapReduce Core (https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-mapreduce-project/hadoop-mapreduce-client/hadoop-mapreduce-client-core), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-common:2.10.2 - Apache Hadoop Common (https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-common-project/hadoop-common), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-hdfs:2.10.2 - Apache Hadoop HDFS (https://github.com/apache/hadoop), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-hdfs-client:2.10.2 - Apache Hadoop HDFS Client (https://github.com/apache/hadoop), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-mapreduce-client-core:2.10.2 - Apache Hadoop MapReduce Core (https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-mapreduce-project/hadoop-mapreduce-client/hadoop-mapreduce-client-core), (Apache License, Version 2.0) org.apache.hadoop:hadoop-yarn-api:3.1.0 - Apache Hadoop YARN API (https://github.com/apache/hadoop/tree/branch-3.1.0/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-api), (Apache License, Version 2.0) - org.apache.hadoop:hadoop-yarn-client:2.10.1 - Apache Hadoop YARN Client (https://github.com/apache/hadoop/tree/branch-2.10.1/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-client), (Apache License, Version 2.0) + org.apache.hadoop:hadoop-yarn-client:2.10.2 - Apache Hadoop YARN Client (https://github.com/apache/hadoop/tree/branch-2.10.2/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-client), (Apache License, Version 2.0) org.apache.hadoop:hadoop-yarn-common:3.1.0 - Apache Hadoop YARN Common (https://github.com/apache/hadoop/tree/branch-3.1.0/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-common), (Apache License, Version 2.0) org.apache.hadoop:hadoop-yarn-registry:3.1.0 - Apache Hadoop YARN Registry (https://github.com/apache/hadoop/tree/branch-3.1.0/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-registry), (Apache License, Version 2.0) com.carrotsearch:hppc:0.7.1 - HPPC Collections (https://github.com/carrotsearch/hppc/tree/0.7.1), (The Apache Software License, Version 2.0) diff --git a/pom.xml b/pom.xml index c6cc1b112..c8a1a6743 100644 --- a/pom.xml +++ b/pom.xml @@ -145,7 +145,7 @@ <h2.mysql.version>2.0.0</h2.mysql.version> <debezium.version>1.8.0.Final</debezium.version> <rocksdb.version>6.14.6</rocksdb.version> - <hadoop.version>2.10.1</hadoop.version> + <hadoop.version>2.10.2</hadoop.version> <postgresql.version>42.3.4</postgresql.version> <oracle.jdbc.version>19.3.0.0</oracle.jdbc.version> <mysql.jdbc.version>8.0.21</mysql.jdbc.version>