[jira] [Commented] (CASSANDRA-16464) Upgrade to logback package 1.2.0 or later fix high vulnerabilities

2021-03-01 Thread Bhargav Joshi (Jira)
[ https://issues.apache.org/jira/browse/CASSANDRA-16464?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17293193#comment-17293193 ] Bhargav Joshi commented on CASSANDRA-16464: --- Jermiah, do have directions to build with

[jira] [Updated] (CASSANDRA-16463) high and critical CVEs io.netty to 4.1.42.Final to fix critical and high vulnerabilities

2021-02-23 Thread Bhargav Joshi (Jira)
[ https://issues.apache.org/jira/browse/CASSANDRA-16463?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Bhargav Joshi updated CASSANDRA-16463: -- Resolution: (was: Invalid) Status: Open (was: Resolved) This is not

[jira] [Commented] (CASSANDRA-16463) high and critical CVEs io.netty to 4.1.42.Final to fix critical and high vulnerabilities

2021-02-23 Thread Bhargav Joshi (Jira)
[ https://issues.apache.org/jira/browse/CASSANDRA-16463?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17289114#comment-17289114 ] Bhargav Joshi commented on CASSANDRA-16463: --- |Registry|Repository|Tag|Id|Distro|CVE

[jira] [Commented] (CASSANDRA-16463) high and critical CVEs io.netty to 4.1.42.Final to fix critical and high vulnerabilities

2021-02-23 Thread Bhargav Joshi (Jira)
[ https://issues.apache.org/jira/browse/CASSANDRA-16463?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17289115#comment-17289115 ] Bhargav Joshi commented on CASSANDRA-16463: --- Cassandra on dockerhub also has the same CVEs

[jira] [Created] (CASSANDRA-16464) Upgrade to logback package 1.2.0 or later fix high vulnerabilities

2021-02-19 Thread Bhargav Joshi (Jira)
Bhargav Joshi created CASSANDRA-16464: - Summary: Upgrade to logback package 1.2.0 or later fix high vulnerabilities Key: CASSANDRA-16464 URL: https://issues.apache.org/jira/browse/CASSANDRA-16464

[jira] [Updated] (CASSANDRA-16464) Upgrade to logback package 1.2.0 or later fix high vulnerabilities

2021-02-19 Thread Bhargav Joshi (Jira)
[ https://issues.apache.org/jira/browse/CASSANDRA-16464?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Bhargav Joshi updated CASSANDRA-16464: -- Component/s: Dependencies > Upgrade to logback package 1.2.0 or later fix high

[jira] [Updated] (CASSANDRA-16463) high and critical CVEs io.netty to 4.1.42.Final to fix critical and high vulnerabilities

2021-02-19 Thread Bhargav Joshi (Jira)
[ https://issues.apache.org/jira/browse/CASSANDRA-16463?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Bhargav Joshi updated CASSANDRA-16463: -- Component/s: Dependencies > high and critical CVEs io.netty to 4.1.42.Final to

[jira] [Assigned] (CASSANDRA-16463) high and critical CVEs io.netty to 4.1.42.Final to fix critical and high vulnerabilities

2021-02-19 Thread Bhargav Joshi (Jira)
[ https://issues.apache.org/jira/browse/CASSANDRA-16463?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Bhargav Joshi reassigned CASSANDRA-16463: - Assignee: (was: Bhargav Joshi) > high and critical CVEs io.netty to

[jira] [Updated] (CASSANDRA-16463) high and critical CVEs io.netty to 4.1.42.Final to fix critical and high vulnerabilities

2021-02-19 Thread Bhargav Joshi (Jira)
[ https://issues.apache.org/jira/browse/CASSANDRA-16463?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Bhargav Joshi updated CASSANDRA-16463: -- Description: Repository | Tag | CVE ID | Severity | Packages | Source Package |

[jira] [Updated] (CASSANDRA-16463) netty

2021-02-19 Thread Bhargav Joshi (Jira)
[ https://issues.apache.org/jira/browse/CASSANDRA-16463?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Bhargav Joshi updated CASSANDRA-16463: -- Workflow: Cassandra Default Workflow (was: Cassandra Bug Workflow) Issue

[jira] [Created] (CASSANDRA-16463) netty

2021-02-19 Thread Bhargav Joshi (Jira)
Bhargav Joshi created CASSANDRA-16463: - Summary: netty Key: CASSANDRA-16463 URL: https://issues.apache.org/jira/browse/CASSANDRA-16463 Project: Cassandra Issue Type: Bug

[jira] [Created] (CASSANDRA-16462) Upgrade to Jackson Databind 2.9.10.8 or later fix high vulnerabilities

2021-02-19 Thread Bhargav Joshi (Jira)
Bhargav Joshi created CASSANDRA-16462: - Summary: Upgrade to Jackson Databind 2.9.10.8 or later fix high vulnerabilities Key: CASSANDRA-16462 URL: https://issues.apache.org/jira/browse/CASSANDRA-16462

[jira] [Commented] (CASSANDRA-15278) User's password for sstableloader tool is visible in ps command output.

2019-11-15 Thread Bhargav Joshi (Jira)
[ https://issues.apache.org/jira/browse/CASSANDRA-15278?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16975295#comment-16975295 ] Bhargav Joshi commented on CASSANDRA-15278: --- In addition, sstableloader should be able to