Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-16 Thread Chesnay Schepler
The tag has been fixed. The problem did not affect the releases in any way. On 16/12/2021 11:39, Nicolaus Weidner wrote: Thanks for doing the releases, Chesnay! It looks like the release-1.11.6 tag incorrectly points to the 1.12.7 release commit: $ git show release-1.11.6 tag

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-16 Thread Nicolaus Weidner
Thanks for doing the releases, Chesnay! It looks like the release-1.11.6 tag incorrectly points to the 1.12.7 release commit: $ git show release-1.11.6 tag release-1.11.6 Tagger: Chesnay Schepler Date: Thu Dec 16 04:12:44 2021 +0100 Release Flink 1.11.6 <...> commit

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Israel Ekpo
Thanks for running and release Chesnay I hope so too. On Wed, Dec 15, 2021 at 9:56 PM Chesnay Schepler wrote: > The vote duration has passed and we have approved the releases. > > Binding votes: > * Till > * Yu > * Stephan > > I will now finalize the release. Let's hope this time no new CVE

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Chesnay Schepler
The vote duration has passed and we have approved the releases. Binding votes: * Till * Yu * Stephan I will now finalize the release. Let's hope this time no new CVE pops up... On 15/12/2021 03:55, Chesnay Schepler wrote: Hi everyone, This vote is for the emergency patch releases for 1.11,

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Israel Ekpo
- > From:Yun Gao > Send Time:2021 Dec. 16 (Thu.) 09:14 > To:dev ; Yun Gao ; > Stephan Ewen > Subject:Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate > #1 > > Hi Chesnay, > > Very thanks for the explanation! > > Then +1 (non-bindi

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Yun Gao
ion. Very thanks for the explanation~ Best, Yun -- From:Yun Gao Send Time:2021 Dec. 16 (Thu.) 09:14 To:dev ; Yun Gao ; Stephan Ewen Subject:Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1 Hi Chesnay, Ve

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Yun Gao
for driving the emergency releases! Best, Yun -- From:Chesnay Schepler Send Time:2021 Dec. 16 (Thu.) 09:03 To:dev ; Yun Gao ; Stephan Ewen Subject:Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1 That's

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Chesnay Schepler
1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1 +1 (binding)   - Verified commit history, looks good   => stumbled over the changes in the "create_release_branch.sh ", which are present in each release commit. [1]   => agree that these are not an issue, because this i

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Chesnay Schepler
Ewen Send Date:Thu Dec 16 08:34:10 2021 Recipients:dev Subject:Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1 +1 (binding) - Verified commit history, looks good => stumbled over the changes in the "create_release_branch.sh ", which are present in each r

Re: Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Yun Gao
--Original Mail -- Sender:Stephan Ewen Send Date:Thu Dec 16 08:34:10 2021 Recipients:dev Subject:Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1 +1 (binding) - Verified commit history, looks good => stumbled over the chan

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Stephan Ewen
+1 (binding) - Verified commit history, looks good => stumbled over the changes in the "create_release_branch.sh ", which are present in each release commit. [1] => agree that these are not an issue, because this is an out-of-band release - Release notes for 1.14.2 are off,

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Seth Wiesman
+1 (non-binding) - Checked diff of all versions and verified dep upgrade - Verified checksum and signatures - Built 1.14 from source - checked blog post Seth On Wed, Dec 15, 2021 at 10:22 AM Yu Li wrote: > +1 > > * Verified checksums and signatures > * Reviewed website PR >- Minor: left a

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Yu Li
+1 * Verified checksums and signatures * Reviewed website PR - Minor: left a comment to mention CVE-2021-45046 * Checked and confirmed new tags only contain log4j version bump * Checked release notes and found no issues - I've moved FLINK-25317 to 1.14.3 Thanks for driving these releases

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Chesnay Schepler
FYI; the publication of the python release for 1.11/1.12 will be delayed because we hit the project size limit on pypi again, and increasing that limit may take a while. On the positive side, this gives us more time to fix the mac builds. On 15/12/2021 03:55, Chesnay Schepler wrote: Hi

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Chesnay Schepler
Subject: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1 Hi everyone, This vote is for the emergency patch releases for 1.11, 1.12, 1.13 and 1.14 to address CVE-2021-44228/CVE-2021-45046. It covers all 4 releases as they contain the same changes (upgrading Log4j to 2.16.0) and were

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Till Rohrmann
/jira/browse/FLINK-25317 > > Best > Yun Tang > > From: Chesnay Schepler > Sent: Wednesday, December 15, 2021 10:55 > To: dev@flink.apache.org > Subject: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1 > > Hi every

Re: [VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-15 Thread Yun Tang
/1.12.7/1.13.5/1.14.2, release candidate #1 Hi everyone, This vote is for the emergency patch releases for 1.11, 1.12, 1.13 and 1.14 to address CVE-2021-44228/CVE-2021-45046. It covers all 4 releases as they contain the same changes (upgrading Log4j to 2.16.0) and were prepared simultaneously

[VOTE] Release 1.11.6/1.12.7/1.13.5/1.14.2, release candidate #1

2021-12-14 Thread Chesnay Schepler
Hi everyone, This vote is for the emergency patch releases for 1.11, 1.12, 1.13 and 1.14 to address CVE-2021-44228/CVE-2021-45046. It covers all 4 releases as they contain the same changes (upgrading Log4j to 2.16.0) and were prepared simultaneously by the same person. (Hence, if something is