Skip to content

OSV 10934 CVE-2024-29131 | HADOOP-19123, HADOOP-19532 Bumped Commons-lang3, Commons-config2#121

Merged
prabhjyotsingh merged 3 commits intorel/ODP-3.2.3.6-2from
OSV-10934
Feb 20, 2026
Merged

OSV 10934 CVE-2024-29131 | HADOOP-19123, HADOOP-19532 Bumped Commons-lang3, Commons-config2#121
prabhjyotsingh merged 3 commits intorel/ODP-3.2.3.6-2from
OSV-10934

Conversation

@kravii
Copy link
Copy Markdown

@kravii kravii commented Feb 20, 2026

Compile Success -
image

image

prasad-acit and others added 3 commits February 20, 2026 14:53
…) Contributed by Istvan Toth.

Signed-off-by: Shilun Fan <slfan1989@apache.org>
…che#6661). Contributed by PJ Fanning

Reviewed-by: Shilun Fan <slfan1989@apache.org>
Signed-off-by: Ayush Saxena <ayushsaxena@apache.org>
@prabhjyotsingh prabhjyotsingh merged commit a2321a4 into rel/ODP-3.2.3.6-2 Feb 20, 2026
1 check passed
@prabhjyotsingh prabhjyotsingh deleted the OSV-10934 branch February 20, 2026 22:50
kravii added a commit that referenced this pull request Mar 6, 2026
…lang3, Commons-config2 (#121)

* HADOOP-17946. Upgrade commons-lang to 3.12.0 (apache#3575)

* HADOOP-19532. Update commons-lang3 to 3.17.0 (apache#7591) (apache#7648) Contributed by Istvan Toth.

Signed-off-by: Shilun Fan <slfan1989@apache.org>

* HADOOP-19123. Update to commons-configuration2 2.10.1 due to CVE (apache#6661). Contributed by PJ Fanning

Reviewed-by: Shilun Fan <slfan1989@apache.org>
Signed-off-by: Ayush Saxena <ayushsaxena@apache.org>

---------

Signed-off-by: Shilun Fan <slfan1989@apache.org>
Signed-off-by: Ayush Saxena <ayushsaxena@apache.org>
Co-authored-by: Renukaprasad C <48682981+prasad-acit@users.noreply.github.com>
Co-authored-by: Istvan Toth <stoty@apache.org>
Co-authored-by: PJ Fanning <pjfanning@users.noreply.github.com>
senthh pushed a commit that referenced this pull request Mar 9, 2026
* OSV 10934 CVE-2024-29131 |  HADOOP-19123, HADOOP-19532 Bumped Commons-lang3, Commons-config2 (#121)

* HADOOP-17946. Upgrade commons-lang to 3.12.0 (apache#3575)

* HADOOP-19532. Update commons-lang3 to 3.17.0 (apache#7591) (apache#7648) Contributed by Istvan Toth.

Signed-off-by: Shilun Fan <slfan1989@apache.org>

* HADOOP-19123. Update to commons-configuration2 2.10.1 due to CVE (apache#6661). Contributed by PJ Fanning

Reviewed-by: Shilun Fan <slfan1989@apache.org>
Signed-off-by: Ayush Saxena <ayushsaxena@apache.org>

---------

Signed-off-by: Shilun Fan <slfan1989@apache.org>
Signed-off-by: Ayush Saxena <ayushsaxena@apache.org>
Co-authored-by: Renukaprasad C <48682981+prasad-acit@users.noreply.github.com>
Co-authored-by: Istvan Toth <stoty@apache.org>
Co-authored-by: PJ Fanning <pjfanning@users.noreply.github.com>

* OSV-9619 | 9572 : Bumping commons-net & commons-lang due to CVE

* OSV-3108 | HADOOP-18991, CVE-2025-48734 Remove commons-beanutils dependency from (#123)

Hadoop 3

---------

Signed-off-by: Shilun Fan <slfan1989@apache.org>
Signed-off-by: Ayush Saxena <ayushsaxena@apache.org>
Co-authored-by: Renukaprasad C <48682981+prasad-acit@users.noreply.github.com>
Co-authored-by: Istvan Toth <stoty@apache.org>
Co-authored-by: PJ Fanning <pjfanning@users.noreply.github.com>
Co-authored-by: basapuram-kumar <bsprmkumar@gmail.com>
prabhjyotsingh pushed a commit that referenced this pull request Mar 9, 2026
* OSV 10934 CVE-2024-29131 |  HADOOP-19123, HADOOP-19532 Bumped Commons-lang3, Commons-config2 (#121)

* HADOOP-17946. Upgrade commons-lang to 3.12.0 (apache#3575)

* HADOOP-19532. Update commons-lang3 to 3.17.0 (apache#7591) (apache#7648) Contributed by Istvan Toth.

Signed-off-by: Shilun Fan <slfan1989@apache.org>

* HADOOP-19123. Update to commons-configuration2 2.10.1 due to CVE (apache#6661). Contributed by PJ Fanning

Reviewed-by: Shilun Fan <slfan1989@apache.org>
Signed-off-by: Ayush Saxena <ayushsaxena@apache.org>

---------

Signed-off-by: Shilun Fan <slfan1989@apache.org>
Signed-off-by: Ayush Saxena <ayushsaxena@apache.org>
Co-authored-by: Renukaprasad C <48682981+prasad-acit@users.noreply.github.com>
Co-authored-by: Istvan Toth <stoty@apache.org>
Co-authored-by: PJ Fanning <pjfanning@users.noreply.github.com>

* OSV-9619 | 9572 : Bumping commons-net & commons-lang due to CVE

* OSV-3108 | HADOOP-18991, CVE-2025-48734 Remove commons-beanutils dependency from (#123)

Hadoop 3

---------

Signed-off-by: Shilun Fan <slfan1989@apache.org>
Signed-off-by: Ayush Saxena <ayushsaxena@apache.org>
Co-authored-by: Renukaprasad C <48682981+prasad-acit@users.noreply.github.com>
Co-authored-by: Istvan Toth <stoty@apache.org>
Co-authored-by: PJ Fanning <pjfanning@users.noreply.github.com>
Co-authored-by: basapuram-kumar <bsprmkumar@gmail.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants