Details
-
Sub-task
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
3.0.0-alpha1
-
None
-
None
Description
Commons-httpclient has long been EOL. Critically, it has several security vulnerabilities: CVE-2012-5783 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-5783.
I saw a recent commit that depends on commons-httpclient for TestHttpServerLogs (HADOOP-12625) This JIRA intends to replace the dependency with httpclient APIs.
Attachments
Attachments
Issue Links
- Dependent
-
HADOOP-12625 Add a config to disable the /logs endpoints
- Resolved
- is depended upon by
-
HADOOP-12552 Fix undeclared/unused dependency to httpclient
- Resolved