[ANNOUNCE] Apache Camel 3.14.10 (LTS) Released

2023-11-09 Thread Gregor Zurowski
The Camel PMC is pleased to announce the release of Apache Camel 3.14.10 (LTS). Apache Camel is an open source integration framework that empowers you to quickly and easily integrate various systems consuming or producing data. This patch release contains 12 bug fixes and improvements. The

[ANNOUNCE] Apache Arrow ADBC 0.8.0 released

2023-11-09 Thread David Li
The Apache Arrow community is pleased to announce the 0.8.0 release of the Apache Arrow ADBC libraries. It includes 43 resolved GitHub issues ([1]). The release is available now from [2] and [3]. Release notes are available at:

CVE-2023-47248: PyArrow, PyArrow: Arbitrary code execution when loading a malicious data file

2023-11-09 Thread Antoine Pitrou
Severity: critical Affected versions: - PyArrow 0.14.0 through 14.0.0 - PyArrow 0.14.0 through 14.0.0 Description: Deserialization of untrusted data in IPC and Parquet readers in PyArrow versions 0.14.0 to 14.0.0 allows arbitrary code execution. An application is vulnerable if it reads Arrow