[ 
https://issues.apache.org/jira/browse/HADOOP-18300?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Steve Loughran updated HADOOP-18300:
------------------------------------
    Description: 
Update to the Gson 2.9.0 that has many 
[fixes|https://github.com/google/gson/releases/tag/gson-parent-2.9.0], and 
backward-compatible as long as Java 7+ is used.

Fixes CVE-2022-25647; Dos when unmarshalling data

  was:Update to the Gson 2.9.0 that has many 
[fixes|https://github.com/google/gson/releases/tag/gson-parent-2.9.0], and 
backward-compatible as long as Java 7+ is used.


> Update google-gson to 2.9.0
> ---------------------------
>
>                 Key: HADOOP-18300
>                 URL: https://issues.apache.org/jira/browse/HADOOP-18300
>             Project: Hadoop Common
>          Issue Type: Task
>          Components: build
>            Reporter: Igor Dvorzhak
>            Assignee: Igor Dvorzhak
>            Priority: Minor
>              Labels: pull-request-available
>             Fix For: 3.4.0, 3.2.4, 3.3.5
>
>          Time Spent: 2h
>  Remaining Estimate: 0h
>
> Update to the Gson 2.9.0 that has many 
> [fixes|https://github.com/google/gson/releases/tag/gson-parent-2.9.0], and 
> backward-compatible as long as Java 7+ is used.
> Fixes CVE-2022-25647; Dos when unmarshalling data



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to