Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update to log4j 2.17.1 #1820

Merged
merged 1 commit into from
Dec 28, 2021
Merged

Conversation

reta
Copy link
Collaborator

@reta reta commented Dec 28, 2021

Description

Update to log4j 2.17.1. Luckily, no new CVEs, just post-CVEs cleanups

Issues Resolved

N/A

Check List

  • New functionality includes testing.
    • All tests pass
  • New functionality has been documented.
    • New functionality has javadoc added
  • Commits are signed per the DCO using --signoff

By submitting this pull request, I confirm that my contribution is made under the terms of the Apache 2.0 license.
For more information on following Developer Certificate of Origin and signing off your commits, please check here.

@reta reta requested a review from a team as a code owner December 28, 2021 20:51
@opensearch-ci-bot
Copy link
Collaborator

Can one of the admins verify this patch?

Signed-off-by: Andriy Redko <andriy.redko@aiven.io>
@dblock
Copy link
Member

dblock commented Dec 28, 2021

Do you have a cookbook for upgrading these by now? :)

@opensearch-ci-bot
Copy link
Collaborator

❌   Gradle Check failure 755f693e217f8326af7e88f040aa247b5cff4b69
Log 1705

Reports 1705

@opensearch-ci-bot
Copy link
Collaborator

✅   Gradle Check success 84498d9
Log 1707

Reports 1707

@dblock
Copy link
Member

dblock commented Dec 28, 2021

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-44832 Is a thing, let’s get ahead of doing a 1.2.4 anyway and backport this to 1.x and 1.2

@dblock dblock merged commit 65804d2 into opensearch-project:main Dec 28, 2021
@dblock dblock added backport 1.2 backport 1.x pending backport Identifies an issue or PR that still needs to be backported labels Dec 28, 2021
reta added a commit to reta/OpenSearch that referenced this pull request Dec 28, 2021
Signed-off-by: Andriy Redko <andriy.redko@aiven.io>
reta added a commit to reta/OpenSearch that referenced this pull request Dec 28, 2021
Signed-off-by: Andriy Redko <andriy.redko@aiven.io>
dblock pushed a commit that referenced this pull request Dec 28, 2021
Signed-off-by: Andriy Redko <andriy.redko@aiven.io>
dblock pushed a commit that referenced this pull request Dec 28, 2021
Signed-off-by: Andriy Redko <andriy.redko@aiven.io>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
backport 1.x backport 1.2 pending backport Identifies an issue or PR that still needs to be backported
Projects
None yet
Development

Successfully merging this pull request may close these issues.

5 participants