[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-03 Thread Hyukjin Kwon (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486803#comment-17486803 ] Hyukjin Kwon commented on SPARK-38061: -- Please reopen this JIRA after editing this

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-03 Thread Hyukjin Kwon (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486802#comment-17486802 ] Hyukjin Kwon commented on SPARK-38061: -- In addition, we do use Jackson with safe ve

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-03 Thread Hyukjin Kwon (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486801#comment-17486801 ] Hyukjin Kwon commented on SPARK-38061: -- [~sujitbiswas] please file a separate JIRA

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-03 Thread Sujit Biswas (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486791#comment-17486791 ] Sujit Biswas commented on SPARK-38061: --   *htrace-core4-4.1.0-incubating.jar* is a

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-03 Thread Hyukjin Kwon (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486777#comment-17486777 ] Hyukjin Kwon commented on SPARK-38061: -- [~sujitbiswas] Again, please file a separat

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-03 Thread Sujit Biswas (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486741#comment-17486741 ] Sujit Biswas commented on SPARK-38061: -- Okay let’s take one issue at a time. For th

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-03 Thread Sujit Biswas (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486559#comment-17486559 ] Sujit Biswas commented on SPARK-38061: -- [~hyukjin.kwon]  how to download Spark 3.3

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-03 Thread Hyukjin Kwon (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486344#comment-17486344 ] Hyukjin Kwon commented on SPARK-38061: -- [~sujitbiswas] some changes are not backpor

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-02 Thread Sujit Biswas (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486268#comment-17486268 ] Sujit Biswas commented on SPARK-38061: -- also if some of the issues are resolved, ho

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-02 Thread Sujit Biswas (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486264#comment-17486264 ] Sujit Biswas commented on SPARK-38061: -- not at all helpful, please refer to valid r

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-02 Thread Hyukjin Kwon (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486254#comment-17486254 ] Hyukjin Kwon commented on SPARK-38061: -- No, the security report here simply mention

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-02 Thread Sujit Biswas (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486246#comment-17486246 ] Sujit Biswas commented on SPARK-38061: -- info is there in the attachment, you can do

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-02 Thread Hyukjin Kwon (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486236#comment-17486236 ] Hyukjin Kwon commented on SPARK-38061: -- [~sujitbiswas] Let's separate a ticket for

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-02 Thread Sujit Biswas (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486231#comment-17486231 ] Sujit Biswas commented on SPARK-38061: -- [~hyukjin.kwon]  note jackson-databind sol

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-02-02 Thread Hyukjin Kwon (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17486202#comment-17486202 ] Hyukjin Kwon commented on SPARK-38061: -- That's already upgraded at SPARK-35550 > s

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-01-30 Thread Sujit Biswas (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17484525#comment-17484525 ] Sujit Biswas commented on SPARK-38061: -- do not know what is the best resolution,  h

[jira] [Commented] (SPARK-38061) security scan issue jackson-databinding HDFS dependency library

2022-01-29 Thread Hyukjin Kwon (Jira)
[ https://issues.apache.org/jira/browse/SPARK-38061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17484280#comment-17484280 ] Hyukjin Kwon commented on SPARK-38061: -- [~sujitbiswas], so do you propose to upgrad