You are viewing a plain text version of this content. The canonical link for it is here.
Posted to notifications@zookeeper.apache.org by GitBox <gi...@apache.org> on 2022/04/11 10:04:44 UTC

[GitHub] [zookeeper] arshadmohammad opened a new pull request, #1860: ZOOKEEPER-4510: dependency-check:check failing - reload4j-1.2.19.jar: CVE-2020-9493, CVE-2022-23307

arshadmohammad opened a new pull request, #1860:
URL: https://github.com/apache/zookeeper/pull/1860

   As the CVEs are false positive, suppressed these CVEs.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: notifications-unsubscribe@zookeeper.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [zookeeper] arshadmohammad closed pull request #1860: ZOOKEEPER-4510: dependency-check:check failing - reload4j-1.2.19.jar: CVE-2020-9493, CVE-2022-23307

Posted by GitBox <gi...@apache.org>.
arshadmohammad closed pull request #1860: ZOOKEEPER-4510: dependency-check:check failing - reload4j-1.2.19.jar: CVE-2020-9493, CVE-2022-23307
URL: https://github.com/apache/zookeeper/pull/1860


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: notifications-unsubscribe@zookeeper.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [zookeeper] arshadmohammad commented on pull request #1860: ZOOKEEPER-4510: dependency-check:check failing - reload4j-1.2.19.jar: CVE-2020-9493, CVE-2022-23307

Posted by GitBox <gi...@apache.org>.
arshadmohammad commented on PR #1860:
URL: https://github.com/apache/zookeeper/pull/1860#issuecomment-1096267291

   this is blocker for 3.7.1 release. Can I get more approvals on this...


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: notifications-unsubscribe@zookeeper.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [zookeeper] arshadmohammad commented on pull request #1860: ZOOKEEPER-4510: dependency-check:check failing - reload4j-1.2.19.jar: CVE-2020-9493, CVE-2022-23307

Posted by GitBox <gi...@apache.org>.
arshadmohammad commented on PR #1860:
URL: https://github.com/apache/zookeeper/pull/1860#issuecomment-1117711774

   Thanks everyone for the review. Got new way to get rid of false positive CVEs. 
   Created new PR https://github.com/apache/zookeeper/pull/1872


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: notifications-unsubscribe@zookeeper.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [zookeeper] arshadmohammad commented on pull request #1860: ZOOKEEPER-4510: dependency-check:check failing - reload4j-1.2.19.jar: CVE-2020-9493, CVE-2022-23307

Posted by GitBox <gi...@apache.org>.
arshadmohammad commented on PR #1860:
URL: https://github.com/apache/zookeeper/pull/1860#issuecomment-1100634869

   ping @phunt @symat @eolivelli 


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: notifications-unsubscribe@zookeeper.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org