From d7433d0f3d383651bd0c49b1858ebf7da50dbe1c Mon Sep 17 00:00:00 2001 From: Lari Hotari Date: Tue, 12 Nov 2024 03:09:14 +0000 Subject: [PATCH] [fix][sec] Upgrade Zookeeper to 3.9.3 to address CVE-2024-51504 (#23581) --- distribution/server/src/assemble/LICENSE.bin.txt | 12 ++++++------ pom.xml | 4 ++-- 2 files changed, 8 insertions(+), 8 deletions(-) diff --git a/distribution/server/src/assemble/LICENSE.bin.txt b/distribution/server/src/assemble/LICENSE.bin.txt index 790315de42a81..9847b5fec438d 100644 --- a/distribution/server/src/assemble/LICENSE.bin.txt +++ b/distribution/server/src/assemble/LICENSE.bin.txt @@ -464,9 +464,9 @@ The Apache Software License, Version 2.0 - org.apache.avro-avro-1.11.4.jar - org.apache.avro-avro-protobuf-1.11.4.jar * Apache Curator - - org.apache.curator-curator-client-5.1.0.jar - - org.apache.curator-curator-framework-5.1.0.jar - - org.apache.curator-curator-recipes-5.1.0.jar + - org.apache.curator-curator-client-5.7.1.jar + - org.apache.curator-curator-framework-5.7.1.jar + - org.apache.curator-curator-recipes-5.7.1.jar * Apache Yetus - org.apache.yetus-audience-annotations-0.12.0.jar * Kubernetes Client @@ -498,9 +498,9 @@ The Apache Software License, Version 2.0 - io.vertx-vertx-web-4.5.10.jar - io.vertx-vertx-web-common-4.5.10.jar * Apache ZooKeeper - - org.apache.zookeeper-zookeeper-3.9.2.jar - - org.apache.zookeeper-zookeeper-jute-3.9.2.jar - - org.apache.zookeeper-zookeeper-prometheus-metrics-3.9.2.jar + - org.apache.zookeeper-zookeeper-3.9.3.jar + - org.apache.zookeeper-zookeeper-jute-3.9.3.jar + - org.apache.zookeeper-zookeeper-prometheus-metrics-3.9.3.jar * Snappy Java - org.xerial.snappy-snappy-java-1.1.10.5.jar * Google HTTP Client diff --git a/pom.xml b/pom.xml index bf47646e16c71..ebdf3492d3f3b 100644 --- a/pom.xml +++ b/pom.xml @@ -140,12 +140,12 @@ flexible messaging model and an intuitive client API. 1.26.0 4.17.1 - 3.9.2 + 3.9.3 1.5.0 1.10.0 1.1.10.5 4.1.12.1 - 5.1.0 + 5.7.1 4.1.113.Final 0.0.24.Final 9.4.56.v20240826