Uploaded image for project: 'Solr'
  1. Solr
  2. SOLR-14603

Updating the Restlet Version

Attach filesAttach ScreenshotVotersWatch issueWatchersCreate sub-taskLinkCloneUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete Comments
    XMLWordPrintableJSON

    Details

    • Type: Task
    • Status: Closed
    • Priority: Blocker
    • Resolution: Fixed
    • Affects Version/s: master (9.0)
    • Fix Version/s: 8.6
    • Component/s: Build, Schema and Analysis
    • Labels:
      None

      Description

      There's not a whole lot of risk here because of the limited surface area of Restlet in the project. Ishan Chattopadhyaya even suggested we could remove it, which I tend to agree with.

      I noticed that the Restlet dependency's location was no longer resolving at: https://repo1.maven.org/maven2/org/restlet/jee/org.restlet/2.4.0/org.restlet-2.4.0.jar.

      Now, of course, I could change it to a location that does resolve or download directly. However, I looking at the changelog I thought that maybe I should raise with the community that it an upgrade might be helpful given the CVEs.

      I will leave it to the experts as to whether it makes a difference, but here's the changelog for reference.

      The Lucene tests passed when I upgraded to 2.4.3 but I'm still digging in. It is very likely that 2.4.1 would be better. I'd leave that, again, to the experts and post my findings.

      https://github.com/apache/lucene-solr/pull/1622

        Attachments

        Issue Links

          Activity

            People

            • Assignee:
              ichattopadhyaya Ishan Chattopadhyaya
              Reporter:
              marcussorealheis Marcus Eagan

              Dates

              • Created:
                Updated:
                Resolved:

                Time Tracking

                Estimated:
                Original Estimate - Not Specified
                Not Specified
                Remaining:
                Remaining Estimate - 0h
                0h
                Logged:
                Time Spent - 10m
                10m

                  Issue deployment