This is an automated email from the ASF dual-hosted git repository. lhotari pushed a commit to branch branch-2.11 in repository https://gitbox.apache.org/repos/asf/pulsar.git
The following commit(s) were added to refs/heads/branch-2.11 by this push: new 78d0b2ed300 [fix][sec] Upgrade Zookeeper to 3.9.2 to address CVE-2024-23944 (#22275) 78d0b2ed300 is described below commit 78d0b2ed300fc5f9a17405941f91ab3619c5f551 Author: Lari Hotari <lhot...@users.noreply.github.com> AuthorDate: Fri Mar 15 07:41:13 2024 -0700 [fix][sec] Upgrade Zookeeper to 3.9.2 to address CVE-2024-23944 (#22275) (cherry picked from commit 2ffcf62f628c6f41e78eeb2dd64999d558b6f617) # Conflicts: # pom.xml --- distribution/server/src/assemble/LICENSE.bin.txt | 6 +++--- pom.xml | 2 +- pulsar-sql/presto-distribution/LICENSE | 4 ++-- 3 files changed, 6 insertions(+), 6 deletions(-) diff --git a/distribution/server/src/assemble/LICENSE.bin.txt b/distribution/server/src/assemble/LICENSE.bin.txt index a71ee9464bf..18d2e3a5a8e 100644 --- a/distribution/server/src/assemble/LICENSE.bin.txt +++ b/distribution/server/src/assemble/LICENSE.bin.txt @@ -533,9 +533,9 @@ The Apache Software License, Version 2.0 - io.vertx-vertx-web-3.9.8.jar - io.vertx-vertx-web-common-3.9.8.jar * Apache ZooKeeper - - org.apache.zookeeper-zookeeper-3.9.1.jar - - org.apache.zookeeper-zookeeper-jute-3.9.1.jar - - org.apache.zookeeper-zookeeper-prometheus-metrics-3.9.1.jar + - org.apache.zookeeper-zookeeper-3.9.2.jar + - org.apache.zookeeper-zookeeper-jute-3.9.2.jar + - org.apache.zookeeper-zookeeper-prometheus-metrics-3.9.2.jar * Snappy Java - org.xerial.snappy-snappy-java-1.1.10.5.jar * Google HTTP Client diff --git a/pom.xml b/pom.xml index 57bea35982a..715458ed0b3 100644 --- a/pom.xml +++ b/pom.xml @@ -118,7 +118,7 @@ flexible messaging model and an intuitive client API.</description> <commons-compress.version>1.26.0</commons-compress.version> <bookkeeper.version>4.15.5</bookkeeper.version> - <zookeeper.version>3.9.1</zookeeper.version> + <zookeeper.version>3.9.2</zookeeper.version> <commons-cli.version>1.5.0</commons-cli.version> <commons-text.version>1.10.0</commons-text.version> <snappy.version>1.1.10.5</snappy.version> <!-- ZooKeeper server --> diff --git a/pulsar-sql/presto-distribution/LICENSE b/pulsar-sql/presto-distribution/LICENSE index 42b16fc0391..332f6390d0f 100644 --- a/pulsar-sql/presto-distribution/LICENSE +++ b/pulsar-sql/presto-distribution/LICENSE @@ -479,8 +479,8 @@ The Apache Software License, Version 2.0 - memory-0.8.3.jar - sketches-core-0.8.3.jar * Apache Zookeeper - - zookeeper-3.9.1.jar - - zookeeper-jute-3.9.1.jar + - zookeeper-3.9.2.jar + - zookeeper-jute-3.9.2.jar * Apache Yetus Audience Annotations - audience-annotations-0.12.0.jar * Swagger