Attila Bukor has submitted this change and it was merged. ( 
http://gerrit.cloudera.org:8080/18115 )

Change subject: [java] Bump log4j to 2.17.1
......................................................................

[java] Bump log4j to 2.17.1

Yet another Log4j vulnerability has been identified (CVE-2021-44832)
which has been patched in 2.17.1[1].

This commit bumps the log4j dependency to this version.

[1] https://logging.apache.org/log4j/2.x/security.html#CVE-2021-44832

Change-Id: I42fe9f3124943b6fa42670a04c2fd7266299165f
Reviewed-on: http://gerrit.cloudera.org:8080/18115
Tested-by: Kudu Jenkins
Reviewed-by: Alexey Serbin <[email protected]>
---
M java/gradle/dependencies.gradle
1 file changed, 1 insertion(+), 1 deletion(-)

Approvals:
  Kudu Jenkins: Verified
  Alexey Serbin: Looks good to me, approved

--
To view, visit http://gerrit.cloudera.org:8080/18115
To unsubscribe, visit http://gerrit.cloudera.org:8080/settings

Gerrit-Project: kudu
Gerrit-Branch: master
Gerrit-MessageType: merged
Gerrit-Change-Id: I42fe9f3124943b6fa42670a04c2fd7266299165f
Gerrit-Change-Number: 18115
Gerrit-PatchSet: 2
Gerrit-Owner: Attila Bukor <[email protected]>
Gerrit-Reviewer: Alexey Serbin <[email protected]>
Gerrit-Reviewer: Andrew Wong <[email protected]>
Gerrit-Reviewer: Attila Bukor <[email protected]>
Gerrit-Reviewer: Kudu Jenkins (120)

Reply via email to