[ https://issues.apache.org/jira/browse/HBASE-27423?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17635569#comment-17635569 ]
Hudson commented on HBASE-27423: -------------------------------- Results for branch branch-2.4 [build #462 on builds.a.o|https://ci-hbase.apache.org/job/HBase%20Nightly/job/branch-2.4/462/]: (x) *{color:red}-1 overall{color}* ---- details (if available): (/) {color:green}+1 general checks{color} -- For more information [see general report|https://ci-hbase.apache.org/job/HBase%20Nightly/job/branch-2.4/462/General_20Nightly_20Build_20Report/] (x) {color:red}-1 jdk8 hadoop2 checks{color} -- For more information [see jdk8 (hadoop2) report|https://ci-hbase.apache.org/job/HBase%20Nightly/job/branch-2.4/462/JDK8_20Nightly_20Build_20Report_20_28Hadoop2_29/] (x) {color:red}-1 jdk8 hadoop3 checks{color} -- For more information [see jdk8 (hadoop3) report|https://ci-hbase.apache.org/job/HBase%20Nightly/job/branch-2.4/462/JDK8_20Nightly_20Build_20Report_20_28Hadoop3_29/] (x) {color:red}-1 jdk11 hadoop3 checks{color} -- For more information [see jdk11 report|https://ci-hbase.apache.org/job/HBase%20Nightly/job/branch-2.4/462/JDK11_20Nightly_20Build_20Report_20_28Hadoop3_29/] (/) {color:green}+1 source release artifact{color} -- See build output for details. (/) {color:green}+1 client integration test{color} > Upgrade hbase-thirdparty to 4.1.3 and upgrade Jackson for CVE-2022-42003/42004 > ------------------------------------------------------------------------------ > > Key: HBASE-27423 > URL: https://issues.apache.org/jira/browse/HBASE-27423 > Project: HBase > Issue Type: Bug > Components: security > Reporter: Andrew Kyle Purtell > Assignee: Duo Zhang > Priority: Major > Fix For: 2.6.0, 3.0.0-alpha-4, 2.5.2, 2.4.16 > > > Jackson 2.13.4 fixes CVE-2022-42003 and databind 2.14.0-rc1 fixes > CVE-2022-42004. > Move jackson.version to 2.13.4. > Move jackson.databind.version to 2.14.0-rc1. -- This message was sent by Atlassian Jira (v8.20.10#820010)