[ https://issues.apache.org/jira/browse/HADOOP-12767?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15169458#comment-15169458 ]
Wei-Chiu Chuang commented on HADOOP-12767: ------------------------------------------ Hi thanks again for the work. If 003 patch is for branch-2, please rename the patch as HADOOP-12767-branch-2.004.patch, so that Yetus applies the patch against branch-2. > update apache httpclient version to the latest 4.5 for security > --------------------------------------------------------------- > > Key: HADOOP-12767 > URL: https://issues.apache.org/jira/browse/HADOOP-12767 > Project: Hadoop Common > Issue Type: Bug > Affects Versions: 3.0.0 > Reporter: Artem Aliev > Assignee: Artem Aliev > Attachments: HADOOP-12767.001.patch, HADOOP-12767.002.patch, > HADOOP-12767.003.patch, HADOOP-12767.004.patch > > > Various SSL security fixes are needed. See: CVE-2012-6153, CVE-2011-4461, > CVE-2014-3577, CVE-2015-5262. -- This message was sent by Atlassian JIRA (v6.3.4#6332)