Uploaded image for project: 'ZooKeeper'
  1. ZooKeeper
  2. ZOOKEEPER-4417

Zookeeper 3.7.0 : Netty related jars to be upgraded to 4.1.68 for Security upgrade

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Open
    • Critical
    • Resolution: Unresolved
    • 3.7.0
    • None
    • server
    • None

    Description

      Netty related jars have downgraded in latest(3.7.0) to lower version compared the previous versions of zookeeper(3.6.3). 

      Please find the details below:

      Current Zookeeper Version 3.7.0: netty 4.1.59 version jars have been used

      Old Zookeeper version apache-zookeeper-3.6.3 : netty 4.1.63 have been used.

      Is there any reason behind this change?

      There are so many security advances have been made as part of netty upgrade, All those were missed here. 

       

      Is there any plan of adding this jar in the future release.

      Attachments

        Activity

          People

            Unassigned Unassigned
            aravva Anil Kumar Ravva
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated: