HADOOP-18924. Upgrade to grpc 1.53.0 due to CVEs (#6161). Contributed by PJ Fanning.

Signed-off-by: Ayush Saxena <ayushsaxena@apache.org>
This commit is contained in:
PJ Fanning 2023-12-01 05:23:47 +01:00 committed by GitHub
parent 0417c1c633
commit 3cb3dfafe5
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
2 changed files with 22 additions and 10 deletions

View File

@ -250,13 +250,13 @@ commons-daemon:commons-daemon:1.0.13
commons-io:commons-io:2.14.0 commons-io:commons-io:2.14.0
commons-net:commons-net:3.9.0 commons-net:commons-net:3.9.0
de.ruedigermoeller:fst:2.50 de.ruedigermoeller:fst:2.50
io.grpc:grpc-api:1.26.0 io.grpc:grpc-api:1.53.0
io.grpc:grpc-context:1.26.0 io.grpc:grpc-context:1.53.0
io.grpc:grpc-core:1.26.0 io.grpc:grpc-core:1.53.0
io.grpc:grpc-netty:1.26.0 io.grpc:grpc-netty:1.53.0
io.grpc:grpc-protobuf:1.26.0 io.grpc:grpc-protobuf:1.53.0
io.grpc:grpc-protobuf-lite:1.26.0 io.grpc:grpc-protobuf-lite:1.53.0
io.grpc:grpc-stub:1.26.0 io.grpc:grpc-stub:1.53.0
io.netty:netty-all:4.1.100.Final io.netty:netty-all:4.1.100.Final
io.netty:netty-buffer:4.1.100.Final io.netty:netty-buffer:4.1.100.Final
io.netty:netty-codec:4.1.100.Final io.netty:netty-codec:4.1.100.Final
@ -482,7 +482,7 @@ com.microsoft.sqlserver:mssql-jdbc:6.2.1.jre7
org.bouncycastle:bcpkix-jdk15on:1.68 org.bouncycastle:bcpkix-jdk15on:1.68
org.bouncycastle:bcprov-jdk15on:1.68 org.bouncycastle:bcprov-jdk15on:1.68
org.checkerframework:checker-qual:2.5.2 org.checkerframework:checker-qual:2.5.2
org.codehaus.mojo:animal-sniffer-annotations:1.17 org.codehaus.mojo:animal-sniffer-annotations:1.21
org.jruby.jcodings:jcodings:1.0.13 org.jruby.jcodings:jcodings:1.0.13
org.jruby.joni:joni:2.1.2 org.jruby.joni:joni:2.1.2
org.slf4j:jul-to-slf4j:jar:1.7.25 org.slf4j:jul-to-slf4j:jar:1.7.25

View File

@ -26,7 +26,8 @@
<packaging>jar</packaging> <packaging>jar</packaging>
<properties> <properties>
<grpc.version>1.26.0</grpc.version> <grpc.version>1.53.0</grpc.version>
<animal-sniffer.version>1.21</animal-sniffer.version>
</properties> </properties>
<dependencies> <dependencies>
@ -48,6 +49,17 @@
<groupId>io.grpc</groupId> <groupId>io.grpc</groupId>
<artifactId>grpc-core</artifactId> <artifactId>grpc-core</artifactId>
<version>${grpc.version}</version> <version>${grpc.version}</version>
<exclusions>
<exclusion>
<groupId>org.codehaus.mojo</groupId>
<artifactId>animal-sniffer-annotations</artifactId>
</exclusion>
</exclusions>
</dependency>
<dependency>
<groupId>org.codehaus.mojo</groupId>
<artifactId>animal-sniffer-annotations</artifactId>
<version>${animal-sniffer.version}</version>
</dependency> </dependency>
<dependency> <dependency>
<groupId>io.grpc</groupId> <groupId>io.grpc</groupId>
@ -197,7 +209,7 @@
<configuration> <configuration>
<protocArtifact>com.google.protobuf:protoc:${hadoop.protobuf.version}:exe:${os.detected.classifier}</protocArtifact> <protocArtifact>com.google.protobuf:protoc:${hadoop.protobuf.version}:exe:${os.detected.classifier}</protocArtifact>
<pluginId>grpc-java</pluginId> <pluginId>grpc-java</pluginId>
<pluginArtifact>io.grpc:protoc-gen-grpc-java:1.26.0:exe:${os.detected.classifier}</pluginArtifact> <pluginArtifact>io.grpc:protoc-gen-grpc-java:${grpc.version}:exe:${os.detected.classifier}</pluginArtifact>
</configuration> </configuration>
<executions> <executions>
<execution> <execution>