[ https://issues.apache.org/jira/browse/SPARK-18586?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Sean Owen updated SPARK-18586: ------------------------------ Assignee: Sean Owen Priority: Minor (was: Major) I don't think the CVE actually affected Spark, as Netty 3 isn't directly used, but I updated it anyway. > netty-3.8.0.Final.jar has vulnerability CVE-2014-3488 and CVE-2014-0193 > ------------------------------------------------------------------------ > > Key: SPARK-18586 > URL: https://issues.apache.org/jira/browse/SPARK-18586 > Project: Spark > Issue Type: Bug > Components: Build > Reporter: meiyoula > Assignee: Sean Owen > Priority: Minor > Fix For: 2.2.0 > > -- This message was sent by Atlassian JIRA (v6.3.4#6332) --------------------------------------------------------------------- To unsubscribe, e-mail: issues-unsubscr...@spark.apache.org For additional commands, e-mail: issues-h...@spark.apache.org