[jira] [Commented] (IGNITE-10801) Upgrade H2 version up to 1.4.199

2019-11-28 Thread Sergey Antonov (Jira)


[ 
https://issues.apache.org/jira/browse/IGNITE-10801?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16984345#comment-16984345
 ] 

Sergey Antonov commented on IGNITE-10801:
-

[~amashenkov] Ok, I closed ticket as won't fix. 

> Upgrade H2 version up to 1.4.199
> 
>
> Key: IGNITE-10801
> URL: https://issues.apache.org/jira/browse/IGNITE-10801
> Project: Ignite
>  Issue Type: Improvement
>  Components: sql
>Affects Versions: 2.7
>Reporter: Sergey Antonov
>Priority: Critical
>  Labels: sql
>  Time Spent: 20m
>  Remaining Estimate: 0h
>
> After h2 1.4.199 release we should upgrade h2 version using in AI, because of 
> important bugs will be fixed there. For example 
> https://github.com/h2database/h2database/issues/1057



--
This message was sent by Atlassian Jira
(v8.3.4#803005)


[jira] [Commented] (IGNITE-10801) Upgrade H2 version up to 1.4.199

2019-11-28 Thread Andrey Mashenkov (Jira)


[ 
https://issues.apache.org/jira/browse/IGNITE-10801?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16984343#comment-16984343
 ] 

Andrey Mashenkov commented on IGNITE-10801:
---

I've failed while trying to upgrade H2 up to 1.4.199.
There are 2 issues that should be resolved at first as we can't rollback 2-3 
commits from H2 code as it is already released.

The first one is names (e.g function) quotation policy are changed and this 
cause too many Ignite test failures.
The second one is multi-statement queries will run in parallel from 1.4.199, 
and this cause major changes in Ignite.

Also, ticket description is unclear. 
Now, regarding IEP-37 [1], this doesn't look worth an effort.
What exact fixes are important for Ignite that makes ticket priority critical?

[1] 
https://cwiki.apache.org/confluence/display/IGNITE/IEP-37%3A+New+query+execution+engine

> Upgrade H2 version up to 1.4.199
> 
>
> Key: IGNITE-10801
> URL: https://issues.apache.org/jira/browse/IGNITE-10801
> Project: Ignite
>  Issue Type: Improvement
>  Components: sql
>Affects Versions: 2.7
>Reporter: Sergey Antonov
>Priority: Critical
>  Labels: sql
> Fix For: 2.8
>
>  Time Spent: 20m
>  Remaining Estimate: 0h
>
> After h2 1.4.199 release we should upgrade h2 version using in AI, because of 
> important bugs will be fixed there. For example 
> https://github.com/h2database/h2database/issues/1057



--
This message was sent by Atlassian Jira
(v8.3.4#803005)


[jira] [Commented] (IGNITE-10801) Upgrade H2 version up to 1.4.199

2019-11-28 Thread Andrey Mashenkov (Jira)


[ 
https://issues.apache.org/jira/browse/IGNITE-10801?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16984332#comment-16984332
 ] 

Andrey Mashenkov commented on IGNITE-10801:
---

Hi [~rajeshn],
CVE doesn't affect Ignite. There is a ticket closed with "won't fix" [1] and 
discussion on dev-list [2].

[1] https://issues.apache.org/jira/browse/IGNITE-11765
[2] 
http://apache-ignite-developers.2346864.n4.nabble.com/H2-license-and-vulnerabilities-td40417.html


> Upgrade H2 version up to 1.4.199
> 
>
> Key: IGNITE-10801
> URL: https://issues.apache.org/jira/browse/IGNITE-10801
> Project: Ignite
>  Issue Type: Improvement
>  Components: sql
>Affects Versions: 2.7
>Reporter: Sergey Antonov
>Priority: Critical
>  Labels: sql
> Fix For: 2.8
>
>  Time Spent: 20m
>  Remaining Estimate: 0h
>
> After h2 1.4.199 release we should upgrade h2 version using in AI, because of 
> important bugs will be fixed there. For example 
> https://github.com/h2database/h2database/issues/1057



--
This message was sent by Atlassian Jira
(v8.3.4#803005)


[jira] [Commented] (IGNITE-10801) Upgrade H2 version up to 1.4.199

2019-10-22 Thread Rajesh (Jira)


[ 
https://issues.apache.org/jira/browse/IGNITE-10801?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16956870#comment-16956870
 ] 

Rajesh commented on IGNITE-10801:
-

There is a security vulnerability with H2 version 1.4.96.

*H2 1.4.197, allows remote code execution because CREATE ALIAS can execute 
arbitrary Java code.*

 Ignite should use the higher version of H2 where these severe security 
vulnerabilities are fixed.

> Upgrade H2 version up to 1.4.199
> 
>
> Key: IGNITE-10801
> URL: https://issues.apache.org/jira/browse/IGNITE-10801
> Project: Ignite
>  Issue Type: Improvement
>  Components: sql
>Affects Versions: 2.7
>Reporter: Sergey Antonov
>Priority: Critical
>  Labels: sql
> Fix For: 2.8
>
>
> After h2 1.4.199 release we should upgrade h2 version using in AI, because of 
> important bugs will be fixed there. For example 
> https://github.com/h2database/h2database/issues/1057



--
This message was sent by Atlassian Jira
(v8.3.4#803005)


[jira] [Commented] (IGNITE-10801) Upgrade H2 version up to 1.4.199

2019-10-02 Thread Sergey Antonov (Jira)


[ 
https://issues.apache.org/jira/browse/IGNITE-10801?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16942761#comment-16942761
 ] 

Sergey Antonov commented on IGNITE-10801:
-

[~mmuzaf] Hello! I think yes. We could upgrade h2 version in apache ignite.

> Upgrade H2 version up to 1.4.199
> 
>
> Key: IGNITE-10801
> URL: https://issues.apache.org/jira/browse/IGNITE-10801
> Project: Ignite
>  Issue Type: Improvement
>  Components: sql
>Affects Versions: 2.7
>Reporter: Sergey Antonov
>Priority: Critical
>  Labels: sql
> Fix For: 2.8
>
>
> After h2 1.4.199 release we should upgrade h2 version using in AI, because of 
> important bugs will be fixed there. For example 
> https://github.com/h2database/h2database/issues/1057



--
This message was sent by Atlassian Jira
(v8.3.4#803005)


[jira] [Commented] (IGNITE-10801) Upgrade H2 version up to 1.4.199

2019-10-02 Thread Maxim Muzafarov (Jira)


[ 
https://issues.apache.org/jira/browse/IGNITE-10801?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16942758#comment-16942758
 ] 

Maxim Muzafarov commented on IGNITE-10801:
--

[~antonovsergey93] 

Hello! Is this issue is still actual? Do we expect it to be included in 2.8?

> Upgrade H2 version up to 1.4.199
> 
>
> Key: IGNITE-10801
> URL: https://issues.apache.org/jira/browse/IGNITE-10801
> Project: Ignite
>  Issue Type: Improvement
>  Components: sql
>Affects Versions: 2.7
>Reporter: Sergey Antonov
>Priority: Critical
>  Labels: sql
> Fix For: 2.8
>
>
> After h2 1.4.199 release we should upgrade h2 version using in AI, because of 
> important bugs will be fixed there. For example 
> https://github.com/h2database/h2database/issues/1057



--
This message was sent by Atlassian Jira
(v8.3.4#803005)