Abhishek Chennaka has uploaded this change for review. ( 
http://gerrit.cloudera.org:8080/22153


Change subject: [java] upgrade protobuf from 3.21.12 to 3.25.5
......................................................................

[java] upgrade protobuf from 3.21.12 to 3.25.5

This is to address at least CVE-2024-7254 and make security scanners
happier.  More information on the vulnerability is available at [1].

This is to address KUDU-3629, at least partially.

[1] 
https://github.com/protocolbuffers/protobuf/security/advisories/GHSA-735f-pc8j-v9w8

Change-Id: I65012cc999d30cee3bb8389b3b94945d4992c11d
Reviewed-on: http://gerrit.cloudera.org:8080/22137
Reviewed-by: Zoltan Chovan <[email protected]>
Tested-by: Alexey Serbin <[email protected]>
Reviewed-by: Abhishek Chennaka <[email protected]>
(cherry picked from commit 150ec7ff541ec142f378440d8f844d9e9d500876)
---
M java/gradle/dependencies.gradle
1 file changed, 1 insertion(+), 1 deletion(-)



  git pull ssh://gerrit.cloudera.org:29418/kudu refs/changes/53/22153/1
--
To view, visit http://gerrit.cloudera.org:8080/22153
To unsubscribe, visit http://gerrit.cloudera.org:8080/settings

Gerrit-Project: kudu
Gerrit-Branch: branch-1.18.x
Gerrit-MessageType: newchange
Gerrit-Change-Id: I65012cc999d30cee3bb8389b3b94945d4992c11d
Gerrit-Change-Number: 22153
Gerrit-PatchSet: 1
Gerrit-Owner: Abhishek Chennaka <[email protected]>
Gerrit-Reviewer: Alexey Serbin <[email protected]>

Reply via email to