Skip to content

Commit

Permalink
Browse files Browse the repository at this point in the history
…sory updates (#9204)
  • Loading branch information
jamie-albert authored Nov 25, 2024
1 parent 70d2c59 commit b7f7046
Showing 1 changed file with 12 additions and 0 deletions.
12 changes: 12 additions & 0 deletions tez.advisories.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -21,6 +21,10 @@ advisories:
componentType: java-archive
componentLocation: /usr/share/java/tez/lib/jetty-server-9.4.53.v20231009.jar
scanner: grype
- timestamp: 2024-11-22T14:19:57Z
type: pending-upstream-fix
data:
note: The dependency responsible for this CVE is a transitive dependency where the version of said dependency is not explicitly defined in the project but rather brought in under the hadoop-client-runtime jar. This requires upstream maintainers to implement a fix.

- id: CGA-2hvc-45v7-8f34
aliases:
Expand Down Expand Up @@ -143,6 +147,10 @@ advisories:
componentType: java-archive
componentLocation: /usr/share/java/tez/lib/avro-1.9.2.jar
scanner: grype
- timestamp: 2024-11-22T14:19:03Z
type: pending-upstream-fix
data:
note: The dependency responsible for this CVE is a transitive dependency where the version of said dependency is not explicitly defined in the project but rather brought in under the hadoop-client-runtime jar. This requires upstream maintainers to implement a fix.

- id: CGA-7pfp-wfcr-cm2m
aliases:
Expand Down Expand Up @@ -310,6 +318,10 @@ advisories:
componentType: java-archive
componentLocation: /usr/share/java/tez/lib/jetty-http-9.4.53.v20231009.jar
scanner: grype
- timestamp: 2024-11-22T14:19:26Z
type: pending-upstream-fix
data:
note: The dependency responsible for this CVE is a transitive dependency where the version of said dependency is not explicitly defined in the project but rather brought in under the hadoop-client-runtime jar. This requires upstream maintainers to implement a fix.

- id: CGA-cxfp-ggmh-c85x
aliases:
Expand Down

0 comments on commit b7f7046

Please sign in to comment.