Re: Solr 9.2.1: Creation of Core "Hangs"

2023-10-27 Thread Ishan Chattopadhyaya
Looks serious, a JIRA would be very helpful. Thanks! On Fri, 27 Oct, 2023, 9:53 pm Andreas Hubold, wrote: > Hi Solr devs, > > I've seen the same problem with Solr 9.2.1 now, and I think we have a > bug here: Core creation may deadlock if there are concurrent requests > for metrics > > The situat

Re: Solr 9.2.1: Creation of Core "Hangs"

2023-10-27 Thread Andreas Hubold
Hi Solr devs, I've seen the same problem with Solr 9.2.1 now, and I think we have a bug here: Core creation may deadlock if there are concurrent requests for metrics The situation is a complex race condition. I might be wrong, but think I can explain what happened: A CoreAdmin CREATE reque

Re: Question on "useColdSearcher"

2023-10-27 Thread Surya R
Thanks Shawn for running a test at your end. I checked the Solrconfig and I did not find any warm up queries patterns, to run at the time of startup, That section was disabled in the solrconfig.xml I uploaded the solr startup file to google drive , please find the link below. https://drive.google.

Re: where is the

2023-10-27 Thread Vince McMahon
Thank you, Shawn. On Fri, Oct 27, 2023 at 11:05 AM Shawn Heisey wrote: > On 10/27/23 06:46, Vince McMahon wrote: > > in our environment, I can't get a shell to make changes . I am finding > ways > > to make the shema change and do a proof of concept. > > > > how can I find more examples of solr

Re: where is the

2023-10-27 Thread Shawn Heisey
On 10/27/23 06:46, Vince McMahon wrote: in our environment, I can't get a shell to make changes . I am finding ways to make the shema change and do a proof of concept. how can I find more examples of solr schema api? i can do POST via curl. But, it seems POST has length limitations. Solr's de

Re: where is the

2023-10-27 Thread Vince McMahon
in our environment, I can't get a shell to make changes . I am finding ways to make the shema change and do a proof of concept. how can I find more examples of solr schema api? i can do POST via curl. But, it seems POST has length limitations. On Fri, Oct 27, 2023 at 4:17 AM ufuk yılmaz wrote

Re: Apache SolR and CVE-2023-44487

2023-10-27 Thread Isabella Trevisan
Ok , Thank you Jan !!! Best regards Isabella Il giorno ven 27 ott 2023 alle ore 10:36 Jan Høydahl ha scritto: > There is work in progress on a 8.11.3 release, which will include Jetty > 9.4.53.v20231009 which also is not vulnearble. > Follow the dev-list for details on the progress of this rele

Re: Apache SolR and CVE-2023-44487

2023-10-27 Thread Jan Høydahl
There is work in progress on a 8.11.3 release, which will include Jetty 9.4.53.v20231009 which also is not vulnearble. Follow the dev-list for details on the progress of this release. Jan > 27. okt. 2023 kl. 10:32 skrev Isabella Trevisan > : > > I read that version 9.4.0 mitigates this vulnera

Re: Apache SolR and CVE-2023-44487

2023-10-27 Thread Isabella Trevisan
I read that version 9.4.0 mitigates this vulnerability but my version of solr is 8.11.2. Is there a workaround for version 8.11.2? Thank you Regards Isabella Il giorno ven 27 ott 2023 alle ore 10:16 Isabella Trevisan < isabella.trevi...@infocamere.it> ha scritto: > Sorry , I correct the CVE num

Re: Apache SolR and CVE-2023-44487

2023-10-27 Thread Jan Høydahl
Hi, Why do you believe Solr is vulnerable to this CVE? The latest version 9.4.0 contains Jetty 10.0.17 . Jan > 27. okt. 2023 kl. 10:16 skrev Isabella Trevisan > : > > Sorry , I correct the CVE number CVE-2023-44487. > > Il g

Re: Apache SolR and CVE-2023-44487

2023-10-27 Thread Isabella Trevisan
Sorry , I correct the CVE number CVE-2023-44487. Il giorno ven 27 ott 2023 alle ore 10:14 Isabella Trevisan < isabella.trevi...@infocamere.it> ha scritto: > Hi, > On October 10th, news of this vulnerability came out, which also affected > SolR. > On the Apache SolR Security news page it is not y

RE: where is the

2023-10-27 Thread ufuk yılmaz
I think there are two options, - Edit files on the disk directly, then restart Solr or reload the collection - Use Solr’S Schema API to modify the schema through http api calls I don’t think Solr admin UI allows direct editing of config files. Btw since you are running examples, I’m assuming thi

Apache SolR and CVE-2023-4448

2023-10-27 Thread Isabella Trevisan
Hi, On October 10th, news of this vulnerability came out, which also affected SolR. On the Apache SolR Security news page it is not yet mentioned. Can anyone provide me with some information on this vulnerability and SolR ? Thank you -- Isabella Trevisan