[
https://issues.apache.org/jira/browse/TEZ-4578?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Ayush Saxena resolved TEZ-4578.
-------------------------------
Fix Version/s: 0.10.5
Resolution: Fixed
> Upgrade roaringbit version to 1.2.1 to fix CVE's
> ------------------------------------------------
>
> Key: TEZ-4578
> URL: https://issues.apache.org/jira/browse/TEZ-4578
> Project: Apache Tez
> Issue Type: Improvement
> Reporter: Raghav Aggarwal
> Assignee: Raghav Aggarwal
> Priority: Minor
> Fix For: 0.10.5
>
> Time Spent: 20m
> Remaining Estimate: 0h
>
> Current version of roaring bit has the following CVE's:
> [CVE-2023-2976|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-2976]
> [CVE-2020-8908|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8908]
> [CVE-2020-15250|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15250]
> [CVE-2018-10237|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10237]
>
>
--
This message was sent by Atlassian Jira
(v8.20.10#820010)