Skip to content

Conversation

@peter-toth
Copy link
Contributor

@peter-toth peter-toth commented Oct 9, 2019

What changes were proposed in this pull request?

This PR updates commons-beanutils to 1.9.4.

Why are the changes needed?

CVE fixed in 1.9.4: http://commons.apache.org/proper/commons-beanutils/javadocs/v1.9.4/RELEASE-NOTES.txt

Does this PR introduce any user-facing change?

No.

How was this patch tested?

Existing UTs.

@peter-toth
Copy link
Contributor Author

retest this please

Copy link
Member

@srowen srowen left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks OK pending tests. Jenkins is down now though

@dongjoon-hyun dongjoon-hyun changed the title [SPARK-29410] Update commons-beanutils to 1.9.4 [SPARK-29410][BUILD] Update commons-beanutils to 1.9.4 Oct 9, 2019
@wangyum
Copy link
Member

wangyum commented Oct 12, 2019

retest this please

@SparkQA
Copy link

SparkQA commented Oct 12, 2019

Test build #111956 has finished for PR 26069 at commit 88cf197.

  • This patch passes all tests.
  • This patch merges cleanly.
  • This patch adds no public classes.

@srowen srowen closed this in 3a7126c Oct 12, 2019
@srowen
Copy link
Member

srowen commented Oct 12, 2019

Merged to master and 2.4 after a manual back-port

srowen pushed a commit that referenced this pull request Oct 12, 2019
This PR updates commons-beanutils to 1.9.4.

CVE fixed in 1.9.4: http://commons.apache.org/proper/commons-beanutils/javadocs/v1.9.4/RELEASE-NOTES.txt

No.

Existing UTs.

Closes #26069 from peter-toth/SPARK-29410-update-commons-beanutils-to-1.9.4.

Authored-by: Peter Toth <[email protected]>
Signed-off-by: Sean Owen <[email protected]>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants