Uploaded image for project: 'Pig'
  1. Pig
  2. PIG-5302

Remove HttpClient dependency

    XMLWordPrintableJSON

    Details

    • Type: Improvement
    • Status: Resolved
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: None
    • Fix Version/s: 0.18.0
    • Component/s: None
    • Labels:
      None

      Description

      Pig depends on Apache Commons HttpClient 3.1 which is an old version with security problems (CVE-2015-5262)

      Also, Pig depends on Apache HttpComponents (it also needs update to newer version due to similar reason), which is the successor of HttpClient, thus we should remove HttpClient dependency, and update HttpComponents to 4.4+

        Attachments

        1. ivy-report.css
          5 kB
          Nándor Kollár
        2. org.apache.pig-pig-compile.html
          565 kB
          Nándor Kollár
        3. PIG-5302_1.patch
          1 kB
          Nándor Kollár
        4. PIG-5302_2.patch
          6 kB
          Nándor Kollár
        5. PIG-5302_3.patch
          7 kB
          Nándor Kollár
        6. PIG-5302_4.patch
          5 kB
          Nándor Kollár

          Activity

            People

            • Assignee:
              nkollar Nándor Kollár
              Reporter:
              nkollar Nándor Kollár
            • Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: