This is an automated email from the ASF dual-hosted git repository.

rlevas pushed a commit to branch branch-2.6
in repository https://gitbox.apache.org/repos/asf/ambari.git


The following commit(s) were added to refs/heads/branch-2.6 by this push:
     new 5f386f3  AMBARI-23064. Upgrading jackson-databind (plus 
jackson-annotations and jackson-core) to 2.9.4 due to security concerns
5f386f3 is described below

commit 5f386f3febfa010710a9ade7f81a4fac6d8c7fb7
Author: Sandor Molnar <smol...@hortonworks.com>
AuthorDate: Fri Feb 23 13:45:17 2018 +0100

    AMBARI-23064. Upgrading jackson-databind (plus jackson-annotations and 
jackson-core) to 2.9.4 due to security concerns
---
 ambari-project/pom.xml | 11 +++++++++++
 ambari-server/pom.xml  | 11 ++++++++++-
 2 files changed, 21 insertions(+), 1 deletion(-)

diff --git a/ambari-project/pom.xml b/ambari-project/pom.xml
index d9d6466..5daa38f 100644
--- a/ambari-project/pom.xml
+++ b/ambari-project/pom.xml
@@ -32,6 +32,7 @@
     <jetty.version>8.1.19.v20160209</jetty.version>
     <checkstyle.version>6.19</checkstyle.version> <!-- last version that does 
not require Java 8 -->
     <checkstyle.skip>false</checkstyle.skip>
+    <fasterxml.jackson.version>2.9.4</fasterxml.jackson.version>
     <forkCount>4</forkCount>
     <reuseForks>false</reuseForks>
     <surefire.argLine>-Xmx1024m -XX:MaxPermSize=512m 
-Xms512m</surefire.argLine>
@@ -492,6 +493,16 @@
         <artifactId>checkstyle</artifactId>
         <version>${checkstyle.version}</version>
       </dependency>
+      <dependency>
+        <groupId>com.fasterxml.jackson.core</groupId>
+        <artifactId>jackson-annotations</artifactId>
+        <version>${fasterxml.jackson.version}</version>
+      </dependency>
+      <dependency>
+        <groupId>com.fasterxml.jackson.core</groupId>
+        <artifactId>jackson-databind</artifactId>
+        <version>${fasterxml.jackson.version}</version>
+      </dependency>
     </dependencies>
   </dependencyManagement>
   <build>
diff --git a/ambari-server/pom.xml b/ambari-server/pom.xml
index a676a14..98c4e9b 100644
--- a/ambari-server/pom.xml
+++ b/ambari-server/pom.xml
@@ -1446,7 +1446,10 @@
     <dependency>
       <groupId>com.fasterxml.jackson.core</groupId>
       <artifactId>jackson-annotations</artifactId>
-      <version>2.8.0</version>
+    </dependency>
+   <dependency>
+      <groupId>com.fasterxml.jackson.core</groupId>
+      <artifactId>jackson-databind</artifactId>
     </dependency>
     <dependency>
       <groupId>net.sf.ehcache</groupId>
@@ -1543,6 +1546,12 @@
       <artifactId>json-schema-validator</artifactId>
       <version>0.1.10</version>
       <scope>test</scope>
+      <exclusions>
+        <exclusion>
+            <groupId>com.fasterxml.jackson.core</groupId>
+            <artifactId>jackson-databind</artifactId>
+        </exclusion>
+      </exclusions>
     </dependency>
   </dependencies>
 

-- 
To stop receiving notification emails like this one, please contact
rle...@apache.org.

Reply via email to