Details
-
Dependency upgrade
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
1.9.0
-
None
-
None
Description
Vulnerability: https://nvd.nist.gov/vuln/detail/CVE-2011-4461
Need to upgrade to Avro IPC version 1.9.0 or later which does not depend on the vulnerable version of Jetty (it actually doesn't use Jetty at all)
Attachments
Issue Links
- duplicates
-
FLUME-3363 CVE-2019-20445
- Resolved