Skip to content

Conversation

@bjornjorgensen
Copy link
Contributor

@bjornjorgensen bjornjorgensen commented Oct 4, 2022

What changes were proposed in this pull request?

Upgrade jetty from 9.4.46.v20220331 to 9.4.48.v20220622
Relase notes

Why are the changes needed?

CVE-2022-2047
and
CVE-2022-2048 This is a 7.5 HIGH

Does this PR introduce any user-facing change?

No.

How was this patch tested?

Pass Github actions

@github-actions github-actions bot added the BUILD label Oct 4, 2022
@bjornjorgensen bjornjorgensen changed the title [WIP][3.3][Jetty48.v20220622] [WIP][SPARK-39725][3.3][Upgrade jetty to 9.4.48.v20220622] Oct 4, 2022
@bjornjorgensen bjornjorgensen changed the title [WIP][SPARK-39725][3.3][Upgrade jetty to 9.4.48.v20220622] [WIP][SPARK-39725][BUILD][3.3][Upgrade jetty to 9.4.48.v20220622] Oct 4, 2022
@bjornjorgensen
Copy link
Contributor Author

@srowen Do you want a new jira for this one?

@bjornjorgensen bjornjorgensen changed the title [WIP][SPARK-39725][BUILD][3.3][Upgrade jetty to 9.4.48.v20220622] [WIP][SPARK-39725][BUILD][3.3] Upgrade jetty to 9.4.48.v20220622 Oct 4, 2022
@srowen
Copy link
Member

srowen commented Oct 4, 2022

No this is fine.

@bjornjorgensen bjornjorgensen changed the title [WIP][SPARK-39725][BUILD][3.3] Upgrade jetty to 9.4.48.v20220622 [SPARK-39725][BUILD][3.3] Upgrade jetty to 9.4.48.v20220622 Oct 4, 2022
dongjoon-hyun pushed a commit that referenced this pull request Oct 5, 2022
### What changes were proposed in this pull request?
Upgrade jetty from 9.4.46.v20220331 to 9.4.48.v20220622
[Relase notes](https://github.com/eclipse/jetty.project/releases/tag/jetty-9.4.48.v20220622)
### Why are the changes needed?
[CVE-2022-2047](https://nvd.nist.gov/vuln/detail/CVE-2022-2047)
and
[CVE-2022-2048](https://nvd.nist.gov/vuln/detail/CVE-2022-2048) This is a 7.5 HIGH

### Does this PR introduce _any_ user-facing change?
No.

### How was this patch tested?
Pass Github actions

Closes #38098 from bjornjorgensen/patch-1.

Lead-authored-by: Bjørn Jørgensen <[email protected]>
Co-authored-by: Bjørn <[email protected]>
Signed-off-by: Dongjoon Hyun <[email protected]>
@dongjoon-hyun
Copy link
Member

Merged to branch-3.3. Thank you all!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants