You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@ranger.apache.org by ab...@apache.org on 2018/09/26 20:52:53 UTC
ranger git commit: RANGER-1797:Tomcat Security Vulnerability Alert.
The version of the tomcat for ranger should upgrade to 7.0.82.
Repository: ranger
Updated Branches:
refs/heads/ranger-0.7 a58231669 -> bb5e8590c
RANGER-1797:Tomcat Security Vulnerability Alert. The version of the tomcat for ranger should upgrade to 7.0.82.
Signed-off-by: peng.jianhua <pe...@zte.com.cn>
Project: http://git-wip-us.apache.org/repos/asf/ranger/repo
Commit: http://git-wip-us.apache.org/repos/asf/ranger/commit/bb5e8590
Tree: http://git-wip-us.apache.org/repos/asf/ranger/tree/bb5e8590
Diff: http://git-wip-us.apache.org/repos/asf/ranger/diff/bb5e8590
Branch: refs/heads/ranger-0.7
Commit: bb5e8590cc99c1d9f6fa2e6d91ab0f35a07f6a83
Parents: a582316
Author: peng.jianhua <pe...@zte.com.cn>
Authored: Tue Dec 5 10:23:34 2017 +0800
Committer: Abhay Kulkarni <ak...@hortonworks.com>
Committed: Wed Sep 26 13:52:19 2018 -0700
----------------------------------------------------------------------
embeddedwebserver/pom.xml | 5 +++++
pom.xml | 2 +-
src/main/assembly/admin-web.xml | 1 +
src/main/assembly/kms.xml | 1 +
4 files changed, 8 insertions(+), 1 deletion(-)
----------------------------------------------------------------------
http://git-wip-us.apache.org/repos/asf/ranger/blob/bb5e8590/embeddedwebserver/pom.xml
----------------------------------------------------------------------
diff --git a/embeddedwebserver/pom.xml b/embeddedwebserver/pom.xml
index 149ed17..852f04b 100644
--- a/embeddedwebserver/pom.xml
+++ b/embeddedwebserver/pom.xml
@@ -34,6 +34,11 @@
<version>${tomcat.embed.version}</version>
</dependency>
<dependency>
+ <groupId>org.apache.tomcat</groupId>
+ <artifactId>tomcat-annotations-api</artifactId>
+ <version>${tomcat.embed.version}</version>
+ </dependency>
+ <dependency>
<groupId>org.apache.tomcat.embed</groupId>
<artifactId>tomcat-embed-el</artifactId>
<version>${tomcat.embed.version}</version>
http://git-wip-us.apache.org/repos/asf/ranger/blob/bb5e8590/pom.xml
----------------------------------------------------------------------
diff --git a/pom.xml b/pom.xml
index 2ec6768..9d7bd95 100644
--- a/pom.xml
+++ b/pom.xml
@@ -220,7 +220,7 @@
<sun.jersey.core.version>1.4</sun.jersey.core.version>
<sun.jersey.spring.version>1.4</sun.jersey.spring.version>
<tez.version>0.5.2</tez.version>
- <tomcat.embed.version>7.0.77</tomcat.embed.version>
+ <tomcat.embed.version>7.0.82</tomcat.embed.version>
<velocity.version>1.7</velocity.version>
<xmlenc.version>0.52</xmlenc.version>
<xz.version>1.0</xz.version>
http://git-wip-us.apache.org/repos/asf/ranger/blob/bb5e8590/src/main/assembly/admin-web.xml
----------------------------------------------------------------------
diff --git a/src/main/assembly/admin-web.xml b/src/main/assembly/admin-web.xml
index 4dc52fd..0d541cd 100644
--- a/src/main/assembly/admin-web.xml
+++ b/src/main/assembly/admin-web.xml
@@ -200,6 +200,7 @@
<outputDirectory>/ews/lib</outputDirectory>
<includes>
<include>org.apache.tomcat.embed:tomcat-embed*</include>
+ <include>org.apache.tomcat:tomcat-annotations-api*</include>
<include>org.eclipse.jdt.core.compiler:ecj:jar:P20140317-1600</include>
<include>log4j:log4j</include>
<include>org.apache.hadoop:hadoop-auth:jar:${hadoop.version}</include>
http://git-wip-us.apache.org/repos/asf/ranger/blob/bb5e8590/src/main/assembly/kms.xml
----------------------------------------------------------------------
diff --git a/src/main/assembly/kms.xml b/src/main/assembly/kms.xml
index 1709859..49aa647 100755
--- a/src/main/assembly/kms.xml
+++ b/src/main/assembly/kms.xml
@@ -137,6 +137,7 @@
<outputDirectory>/ews/webapp/WEB-INF/classes/lib</outputDirectory>
<includes>
<include>org.apache.tomcat.embed:tomcat-embed*</include>
+ <include>org.apache.tomcat:tomcat-annotations-api*</include>
<include>org.eclipse.jdt.core.compiler:ecj:jar:P20140317-1600</include>
<include>com.google.protobuf:protobuf-java:jar:${protobuf-java.version}</include>
<include>org.apache.hadoop:hadoop-hdfs:jar:${hadoop.version}</include>