[jira] [Commented] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640

2021-10-08 Thread Brahma Reddy Battula (Jira)
[ https://issues.apache.org/jira/browse/HADOOP-17236?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17426136#comment-17426136 ] Brahma Reddy Battula commented on HADOOP-17236: --- Cherry-picked to branch-3.2 and

[jira] [Commented] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640

2021-10-06 Thread Brahma Reddy Battula (Jira)
[ https://issues.apache.org/jira/browse/HADOOP-17236?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17425091#comment-17425091 ] Brahma Reddy Battula commented on HADOOP-17236: --- [~ananysin] Sure, thanks..will create

[jira] [Commented] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640

2021-10-06 Thread Ananya Singh (Jira)
[ https://issues.apache.org/jira/browse/HADOOP-17236?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17424888#comment-17424888 ] Ananya Singh commented on HADOOP-17236: --- Can we backport to branch-3.2? > Bump up snakeyaml to

[jira] [Commented] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640

2020-10-28 Thread Wei-Chiu Chuang (Jira)
[ https://issues.apache.org/jira/browse/HADOOP-17236?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17222199#comment-17222199 ] Wei-Chiu Chuang commented on HADOOP-17236: -- There are no compile time dependency changes; only

[jira] [Commented] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640

2020-10-27 Thread Wei-Chiu Chuang (Jira)
[ https://issues.apache.org/jira/browse/HADOOP-17236?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17221820#comment-17221820 ] Wei-Chiu Chuang commented on HADOOP-17236: -- +1 > Bump up snakeyaml to 1.26 to mitigate

[jira] [Commented] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640

2020-10-27 Thread Brahma Reddy Battula (Jira)
[ https://issues.apache.org/jira/browse/HADOOP-17236?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17221178#comment-17221178 ] Brahma Reddy Battula commented on HADOOP-17236: --- [~xgong] waiting for review. > Bump up

[jira] [Commented] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640

2020-10-26 Thread Xuan Gong (Jira)
[ https://issues.apache.org/jira/browse/HADOOP-17236?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17220989#comment-17220989 ] Xuan Gong commented on HADOOP-17236: [~brahmareddy] any updates? Or it is good to go? > Bump up

[jira] [Commented] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640

2020-09-09 Thread Hadoop QA (Jira)
[ https://issues.apache.org/jira/browse/HADOOP-17236?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17193107#comment-17193107 ] Hadoop QA commented on HADOOP-17236: | (x) *{color:red}-1 overall{color}* | \\ \\ || Vote ||

[jira] [Commented] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640

2020-08-31 Thread Hadoop QA (Jira)
[ https://issues.apache.org/jira/browse/HADOOP-17236?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17187488#comment-17187488 ] Hadoop QA commented on HADOOP-17236: | (x) *{color:red}-1 overall{color}* | \\ \\ || Vote ||