[ https://issues.apache.org/jira/browse/IMPALA-11149?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Joe McDonnell resolved IMPALA-11149. ------------------------------------ Fix Version/s: Impala 4.1.0 Assignee: Joe McDonnell Resolution: Fixed > Upgrade xmlsec to address CVE > ----------------------------- > > Key: IMPALA-11149 > URL: https://issues.apache.org/jira/browse/IMPALA-11149 > Project: IMPALA > Issue Type: Task > Components: Infrastructure > Affects Versions: Impala 4.1.0 > Reporter: Joe McDonnell > Assignee: Joe McDonnell > Priority: Major > Fix For: Impala 4.1.0 > > > Scanning Impala docker images found a CVE listed for xmlsec-2.2.1.jar > (CVE-2021-40690). We need to upgrade this to 2.2.3 or higher to address the > CVE. The latest xmlsec is 2.3.0. -- This message was sent by Atlassian Jira (v8.20.1#820001)