Bilna created SPARK-40422:
-----------------------------

             Summary: Upgrade hive to 4.0.0
                 Key: SPARK-40422
                 URL: https://issues.apache.org/jira/browse/SPARK-40422
             Project: Spark
          Issue Type: Dependency upgrade
          Components: SQL
    Affects Versions: 3.3.0
            Reporter: Bilna


Upgrade hive to 4.0.0 to avoid security vulnerability CVE-2022-25647 through 
google-gson:2.2.4. In hive:4.0.0, the google-gson is upgraded to 2.8.9 for 
which CVE is not reported yet.

 



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

---------------------------------------------------------------------
To unsubscribe, e-mail: issues-unsubscr...@spark.apache.org
For additional commands, e-mail: issues-h...@spark.apache.org

Reply via email to