Re: [Important] Confirmation related to OpenSsl security issue

2014-04-11 Thread Colin McCabe
I took a quick glance at the build output, and I don't think openssl is getting linked statically into libhadooppipes.a. I see the following lines: Linking CXX static library libhadooppipes.a /usr/bin/cmake -P CMakeFiles/hadooppipes.dir/cmake_clean_target.cmake /usr/bin/cmake -E cmake_link_script

Re: [Important] Confirmation related to OpenSsl security issue

2014-04-11 Thread Steve Loughran
I don't know anything about that, but I do know the apache infrastructure related changes -apache.org was vulnerable -a new *.apache.org certificate is being obtained -once issued, committers and anyone with JIRA admin access are going to have to /should change passwords -JIRA login passwords are

[Important] Confirmation related to OpenSsl security issue

2014-04-11 Thread Vinayakumar B
Hi, Recently one security issue has been found in OpenSSL which has impacted so many customers of different vendors. http://www.kb.cert.org/vuls/byvendor?searchview&Query=FIELD+Reference=720951&SearchOrder=4 I want to ask, whether is there in impact of this on the Hadoop Release? Currently