Re: Someone should remove nonexistent versions 2.0.2, 2.1.2 from https://kafka.apache.org/cve-list

2020-08-19 Thread Matthias J. Sax
Franklin,

thanks for raising this. I opened a PR to update the web-page
accordingly: https://github.com/apache/kafka-site/pull/298


-Matthias


On 8/10/20 10:53 AM, Franklin Davis wrote:
> https://kafka.apache.org/cve-list APACHE KAFKA SECURITY VULNERABILITIES 
> incorrectly lists fixed versions 2.0.2 and 2.1.2, but those don't exist (e.g. 
> in https://archive.apache.org/dist/kafka/). I'm not qualified to modify 
> anything -- just letting you know in case someone can fix it.
> 
> --Franklin
> 



signature.asc
Description: OpenPGP digital signature


Someone should remove nonexistent versions 2.0.2, 2.1.2 from https://kafka.apache.org/cve-list

2020-08-10 Thread Franklin Davis
https://kafka.apache.org/cve-list APACHE KAFKA SECURITY VULNERABILITIES 
incorrectly lists fixed versions 2.0.2 and 2.1.2, but those don't exist (e.g. 
in https://archive.apache.org/dist/kafka/). I'm not qualified to modify 
anything -- just letting you know in case someone can fix it.

--Franklin