You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@flink.apache.org by GitBox <gi...@apache.org> on 2022/10/19 09:47:20 UTC

[GitHub] [flink] XComp opened a new pull request, #21107: [FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003

XComp opened a new pull request, #21107:
URL: https://github.com/apache/flink/pull/21107

   This PR is a backport of PR #21064 including also the changes related to [FLINK-29468](https://issues.apache.org/jira/browse/FLINK-29468) to make backporting of jackson version bumps easier.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [flink] XComp commented on pull request #21107: [BP-1.15][FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003

Posted by GitBox <gi...@apache.org>.
XComp commented on PR #21107:
URL: https://github.com/apache/flink/pull/21107#issuecomment-1283729178

   @snuyanzin may you take a look?


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [flink] snuyanzin commented on pull request #21107: [BP-1.15][FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003

Posted by GitBox <gi...@apache.org>.
snuyanzin commented on PR #21107:
URL: https://github.com/apache/flink/pull/21107#issuecomment-1283743442

   for Flink-sql-connector-kinesis it also should be cherry-picked https://github.com/apache/flink/commit/54f81c4a9d1e29b887d4bccafc30df0392146b94
   or NOTICE file should be updated, not sure that I can commit to this branch


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [flink] XComp commented on pull request #21107: [BP-1.15][FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003

Posted by GitBox <gi...@apache.org>.
XComp commented on PR #21107:
URL: https://github.com/apache/flink/pull/21107#issuecomment-1283796144

   I integrated the changes from PR #21108 into this PR


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [flink] XComp merged pull request #21107: [BP-1.15][FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003

Posted by GitBox <gi...@apache.org>.
XComp merged PR #21107:
URL: https://github.com/apache/flink/pull/21107


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [flink] flinkbot commented on pull request #21107: [BP-1.15][FLINK-29638][connectors][filesystems][formats] Update Jackson-BOM to 2.13.4.2 because of CVE-2022-42003

Posted by GitBox <gi...@apache.org>.
flinkbot commented on PR #21107:
URL: https://github.com/apache/flink/pull/21107#issuecomment-1283736315

   <!--
   Meta data
   {
     "version" : 1,
     "metaDataEntries" : [ {
       "hash" : "84bcc25e759dd96dbd28b59e69379c1bc2fcdea0",
       "status" : "UNKNOWN",
       "url" : "TBD",
       "triggerID" : "84bcc25e759dd96dbd28b59e69379c1bc2fcdea0",
       "triggerType" : "PUSH"
     } ]
   }-->
   ## CI report:
   
   * 84bcc25e759dd96dbd28b59e69379c1bc2fcdea0 UNKNOWN
   
   <details>
   <summary>Bot commands</summary>
     The @flinkbot bot supports the following commands:
   
    - `@flinkbot run azure` re-run the last Azure build
   </details>


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@flink.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org