[
https://issues.apache.org/jira/browse/HIVE-29246?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Stamatis Zampetakis resolved HIVE-29246.
----------------------------------------
Fix Version/s: 4.2.0
Resolution: Fixed
Fixed in
[https://github.com/apache/hive/commit/009dea2b09eceba05bc96282842311b27e0d8c07]
Thanks for the PR [~Aggarwal_Raghav] !
> Upgrade derby version to 10.17.1.0
> ----------------------------------
>
> Key: HIVE-29246
> URL: https://issues.apache.org/jira/browse/HIVE-29246
> Project: Hive
> Issue Type: Improvement
> Reporter: Raghav Aggarwal
> Assignee: Raghav Aggarwal
> Priority: Major
> Labels: pull-request-available
> Fix For: 4.2.0
>
>
> As hive master branch is on JDK 21, upgrade of derby to 10.17.1.0 is possible
> [https://db.apache.org/derby/derby_downloads.html]
> This will help with CVE's as well
> [CVE-2022-46337|https://www.cve.org/CVERecord?id=CVE-2022-46337]
> [https://mvnrepository.com/artifact/org.apache.derby/derby/10.14.2.0]
>
> Derby project has done refactoring:
> # org.apache.derby.jdbc.EmbeddedDriver is now part of *derbytools* jar
> # org.apache.derby.security.SystemPermission →
> org.apache.derby.shared.common.security.SystemPermission (this is part of
> derbyshared jar which is compile time dependency for org.apache.derby:derby)
> # org.apache.derby.jdbc.AutoloadedDriver →
> org.apache.derby.iapi.jdbc.AutoloadedDriver
--
This message was sent by Atlassian Jira
(v8.20.10#820010)