-
Notifications
You must be signed in to change notification settings - Fork 52
HBASE-25728 [hbase-thirdparty] Upgrade Netty library to >= 4.1.60 due to security vulnerability CVE-2021-21295 #48
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
|
🎊 +1 overall
This message was automatically generated. |
HorizonNet
left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM. Any specific reason not going to 4.1.63.Final directly?
|
No reason I suppose, let me update... |
… to security vulnerability CVE-2021-21295
|
Updated: <netty.version>4.1.63.Final</netty.version> |
|
Thanks. +1 stands, pending QA. |
|
🎊 +1 overall
This message was automatically generated. |
|
Thanks @HorizonNet |
We don't have a direct exposure to this vulnerability but vulnerability scanners aware of the CVE database may flag it.