From 7b84f6458b2ee1d6d589378bca67bc7cba944b93 Mon Sep 17 00:00:00 2001 From: Ashutosh Gupta Date: Fri, 4 Nov 2022 10:00:17 +0000 Subject: [PATCH] HADOOP-18484. Upgrade hsqldb to v2.7.1 to mitigate CVE-2022-41853 (#5101) --- LICENSE-binary | 2 +- .../hadoop-mapreduce-client-jobclient/pom.xml | 1 + hadoop-mapreduce-project/hadoop-mapreduce-examples/pom.xml | 1 + hadoop-mapreduce-project/pom.xml | 1 + hadoop-project/pom.xml | 3 ++- .../hadoop-yarn-server/hadoop-yarn-server-common/pom.xml | 1 + 6 files changed, 7 insertions(+), 2 deletions(-) diff --git a/LICENSE-binary b/LICENSE-binary index be7b3cba38..cb76de697a 100644 --- a/LICENSE-binary +++ b/LICENSE-binary @@ -492,7 +492,7 @@ jakarta.xml.bind:jakarta.xml.bind-api:2.3.2 HSQL License ------------ -org.hsqldb:hsqldb:2.3.4 +org.hsqldb:hsqldb:2.7.1 JDOM License diff --git a/hadoop-mapreduce-project/hadoop-mapreduce-client/hadoop-mapreduce-client-jobclient/pom.xml b/hadoop-mapreduce-project/hadoop-mapreduce-client/hadoop-mapreduce-client-jobclient/pom.xml index 5168e11d28..292070050e 100644 --- a/hadoop-mapreduce-project/hadoop-mapreduce-client/hadoop-mapreduce-client-jobclient/pom.xml +++ b/hadoop-mapreduce-project/hadoop-mapreduce-client/hadoop-mapreduce-client-jobclient/pom.xml @@ -104,6 +104,7 @@ org.hsqldb hsqldb test + jdk8 diff --git a/hadoop-mapreduce-project/hadoop-mapreduce-examples/pom.xml b/hadoop-mapreduce-project/hadoop-mapreduce-examples/pom.xml index a7a51ec9c5..75a15f1e8c 100644 --- a/hadoop-mapreduce-project/hadoop-mapreduce-examples/pom.xml +++ b/hadoop-mapreduce-project/hadoop-mapreduce-examples/pom.xml @@ -106,6 +106,7 @@ org.hsqldb hsqldb provided + jdk8 org.apache.hadoop.thirdparty diff --git a/hadoop-mapreduce-project/pom.xml b/hadoop-mapreduce-project/pom.xml index fb55e43c83..9fce8dd6eb 100644 --- a/hadoop-mapreduce-project/pom.xml +++ b/hadoop-mapreduce-project/pom.xml @@ -142,6 +142,7 @@ org.hsqldb hsqldb compile + jdk8 ${leveldbjni.group} diff --git a/hadoop-project/pom.xml b/hadoop-project/pom.xml index bcdfb8d1d9..9bb9a9716b 100644 --- a/hadoop-project/pom.xml +++ b/hadoop-project/pom.xml @@ -187,7 +187,7 @@ 1.0-beta-1 900 1.12.316 - 2.3.4 + 2.7.1 1.11.2 2.1 0.7 @@ -1475,6 +1475,7 @@ org.hsqldb hsqldb ${hsqldb.version} + jdk8 io.dropwizard.metrics diff --git a/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-server/hadoop-yarn-server-common/pom.xml b/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-server/hadoop-yarn-server-common/pom.xml index 9e51d4ec04..eecc1349cf 100644 --- a/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-server/hadoop-yarn-server-common/pom.xml +++ b/hadoop-yarn-project/hadoop-yarn/hadoop-yarn-server/hadoop-yarn-server-common/pom.xml @@ -129,6 +129,7 @@ org.hsqldb hsqldb test + jdk8 com.microsoft.sqlserver