You are viewing a plain text version of this content. The canonical link for it is here.
Posted to notifications@jclouds.apache.org by "Jonathan Anstey (JIRA)" <ji...@apache.org> on 2015/09/02 19:21:45 UTC
[jira] [Commented] (JCLOUDS-998) Update to Groovy 2.4.4
[ https://issues.apache.org/jira/browse/JCLOUDS-998?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14727663#comment-14727663 ]
Jonathan Anstey commented on JCLOUDS-998:
-----------------------------------------
Trivial PR here https://github.com/jclouds/jclouds-karaf/pull/70 for the 1.9.x branch.
> Update to Groovy 2.4.4
> ----------------------
>
> Key: JCLOUDS-998
> URL: https://issues.apache.org/jira/browse/JCLOUDS-998
> Project: jclouds
> Issue Type: Improvement
> Components: jclouds-karaf
> Affects Versions: 1.9.1
> Reporter: Jonathan Anstey
>
> The jclouds-karaf commands feature has Groovy 1.8 listed as a dependency, which has a nasty vulnerability described at http://groovy-lang.org/security.html (see info about CVE-2015-3253). This should be upgraded to 2.4.4.
--
This message was sent by Atlassian JIRA
(v6.3.4#6332)