[ANN] Apache Maven Enforcer Plugin 3.1.0 Released

2022-06-10 Thread Slawomir Jaranowski
The Apache Maven team is pleased to announce the release of the Apache Maven Enforcer Plugin, version 3.1.0 This plugin provides goals to control certain environmental constraints such as Maven version, JDK version and OS family along with many more built-in rules and user created rules. https://

Re: CVE-2022-28614: Apache HTTP Server: read beyond bounds via ap_rwrite()

2022-06-10 Thread Eric Covener
On Wed, Jun 8, 2022 at 5:43 AM Stefan Eissing wrote: > > Severity: low > > Description: > > The ap_rwrite() function in Apache HTTP Server 2.4.53 and earlier may read > unintended memory if an attacker can cause the server to reflect very large > input using ap_rwrite() or ap_rputs(), such as wi

CVE-2021-37404: Apache Hadoop: Heap buffer overflow in libhdfs native library

2022-06-10 Thread Masatake Iwasaki
Severity: important Versions affected: 2.9.0 to 2.10.1, 3.0.0 to 3.1.4, 3.2.0 to 3.2.2, 3.3.0 to 3.3.1 Description: There is a potential heap buffer overflow in libhdfs native code. Opening a file path provided by user without validation may result in a denial of service or arbitrary code execu

The Apache Weekly News Round-up: week ending 10 June 2022

2022-06-10 Thread Swapnil M Mane
We're wrapping up another great week with the following activities from the Apache community: ApacheCon™ – the ASF's official global conference series, bringing Tomorrow's Technology Today since 1998. - Sponsorships available for ApacheCon Asia - 29-31 July (online) and ApacheCon North America -

[ANNOUNCE] Apache SkyWalking 9.1.0 released

2022-06-10 Thread Sheng Wu
Hi all, Apache SkyWalking Team is glad to announce the first release of Apache SkyWalking 9.1.0. SkyWalking: APM (application performance monitor) tool for distributed systems, especially designed for microservices, cloud native and container-based (Docker, Kubernetes, Mesos) architectures. This