Basapuram Kumar created RANGER-5072:
---------------------------------------

             Summary: Bump org.apache.avro:avro from 1.11.3 to 1.11.4
                 Key: RANGER-5072
                 URL: https://issues.apache.org/jira/browse/RANGER-5072
             Project: Ranger
          Issue Type: Improvement
          Components: plugins
    Affects Versions: 2.5.0
            Reporter: Basapuram Kumar


 [CVE-2024-47561|https://nvd.nist.gov/vuln/detail/cve-2024-47561] 

 

Description oc CVE

Schema parsing in the Java SDK of Apache Avro 1.11.3 and previous versions 
allows bad actors to execute arbitrary code. Users are recommended to upgrade 
to version 1.11.4  or 1.12.0, which fix this issue.

 

To address the [CVE-2024-47561|https://nvd.nist.gov/vuln/detail/cve-2024-47561] 
, suggesting to bumpup from 1.11.3 to 1.11.4



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to