You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@flink.apache.org by GitBox <gi...@apache.org> on 2022/10/05 22:18:48 UTC

[GitHub] [flink] MartijnVisser opened a new pull request, #20973: [FLINK-29514][Deployment/YARN] Bump Minikdc to v3.2.4

MartijnVisser opened a new pull request, #20973:
URL: https://github.com/apache/flink/pull/20973

   ## What is the purpose of the change
   
   * Bump Minikdc to v3.2.4 to avoid getting falsely flagged as vulnerable for CVEs which don't impact Flink
   
   ## Brief change log
   
   * Updated dependency in POM
   
   ## Verifying this change
   
   This change is a trivial rework / code cleanup without any test coverage.
   
   ## Does this pull request potentially affect one of the following parts:
   
     - Dependencies (does it add or upgrade a dependency): yes
     - The public API, i.e., is any changed class annotated with `@Public(Evolving)`: no
     - The serializers: no
     - The runtime per-record code paths (performance sensitive): no
     - Anything that affects deployment or recovery: JobManager (and its components), Checkpointing, Kubernetes/Yarn, ZooKeeper: no
     - The S3 file system connector: no
   
   ## Documentation
   
     - Does this pull request introduce a new feature? no
     - If yes, how is the feature documented? not applicable
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [flink] MartijnVisser commented on a diff in pull request #20973: [FLINK-29514][Deployment/YARN] Bump Minikdc to v3.2.4

Posted by GitBox <gi...@apache.org>.
MartijnVisser commented on code in PR #20973:
URL: https://github.com/apache/flink/pull/20973#discussion_r988983537


##########
pom.xml:
##########
@@ -165,7 +165,7 @@ under the License.
 			Starting Hadoop 3, org.apache.kerby will be used instead of MiniKDC. We may have
 			to revisit the impact at that time.
 		-->
-		<minikdc.version>3.2.0</minikdc.version>
+		<minikdc.version>3.2.4</minikdc.version>

Review Comment:
   Done



-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [flink] MartijnVisser commented on pull request #20973: [FLINK-29514][Deployment/YARN] Bump Minikdc to v3.2.4

Posted by GitBox <gi...@apache.org>.
MartijnVisser commented on PR #20973:
URL: https://github.com/apache/flink/pull/20973#issuecomment-1269245937

   @flinkbot run azure


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [flink] zentol commented on a diff in pull request #20973: [FLINK-29514][Deployment/YARN] Bump Minikdc to v3.2.4

Posted by GitBox <gi...@apache.org>.
zentol commented on code in PR #20973:
URL: https://github.com/apache/flink/pull/20973#discussion_r988726917


##########
pom.xml:
##########
@@ -165,7 +165,7 @@ under the License.
 			Starting Hadoop 3, org.apache.kerby will be used instead of MiniKDC. We may have
 			to revisit the impact at that time.
 		-->
-		<minikdc.version>3.2.0</minikdc.version>
+		<minikdc.version>3.2.4</minikdc.version>

Review Comment:
   Please add an exclusions for slf4j-reload4j that this now pulls in.



-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [flink] zentol commented on pull request #20973: [FLINK-29514][Deployment/YARN] Bump Minikdc to v3.2.4

Posted by GitBox <gi...@apache.org>.
zentol commented on PR #20973:
URL: https://github.com/apache/flink/pull/20973#issuecomment-1269601908

   @flinkbot run azure


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [flink] flinkbot commented on pull request #20973: [FLINK-29514][Deployment/YARN] Bump Minikdc to v3.2.4

Posted by GitBox <gi...@apache.org>.
flinkbot commented on PR #20973:
URL: https://github.com/apache/flink/pull/20973#issuecomment-1269046874

   <!--
   Meta data
   {
     "version" : 1,
     "metaDataEntries" : [ {
       "hash" : "133d24a675cc24dc6aab61d50165f96f469c4daa",
       "status" : "UNKNOWN",
       "url" : "TBD",
       "triggerID" : "133d24a675cc24dc6aab61d50165f96f469c4daa",
       "triggerType" : "PUSH"
     } ]
   }-->
   ## CI report:
   
   * 133d24a675cc24dc6aab61d50165f96f469c4daa UNKNOWN
   
   <details>
   <summary>Bot commands</summary>
     The @flinkbot bot supports the following commands:
   
    - `@flinkbot run azure` re-run the last Azure build
   </details>


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [flink] MartijnVisser merged pull request #20973: [FLINK-29514][Deployment/YARN] Bump Minikdc to v3.2.4

Posted by GitBox <gi...@apache.org>.
MartijnVisser merged PR #20973:
URL: https://github.com/apache/flink/pull/20973


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org