Uploaded image for project: 'Apache Arrow'
  1. Apache Arrow
  2. ARROW-16996

[Java] Upgrade netty-codec dependencies

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • 8.0.0
    • 9.0.0
    • Java

    Description

      [CVE-2022-24823](https://github.com/advisories/GHSA-269q-hmxg-m83q) reports a security vulnerability for netty-codec

      Now the version of netty-codec in the master branch is 4.1.72.Final, that is unsafe.

      Can you upgrade the version of this depenency ?

       

      Attachments

        Issue Links

          Activity

            People

              dsusanibara David Dali Susanibar Arce
              yuhuixa Hui Yu
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved:

                Time Tracking

                  Estimated:
                  Original Estimate - Not Specified
                  Not Specified
                  Remaining:
                  Remaining Estimate - 0h
                  0h
                  Logged:
                  Time Spent - 5h
                  5h