File tree Expand file tree Collapse file tree 1 file changed +8
-1
lines changed
sdks/java/io/iceberg/hive Expand file tree Collapse file tree 1 file changed +8
-1
lines changed Original file line number Diff line number Diff line change @@ -48,8 +48,15 @@ dependencies {
4848 // old calcite vulnerabilities
4949 exclude group : " org.apache.calcite" , module : " calcite-core"
5050 exclude group : " org.apache.calcite" , module : " calcite-druid"
51+ // old mssql vulnerabilities CVE-2025-59250
52+ exclude group : " com.microsoft.sqlserver" , module : " mssql-jdbc"
5153 }
52- runtimeOnly (" org.apache.hadoop:hadoop-yarn-server-resourcemanager:$hadoop_version " )
54+ runtimeOnly (" org.apache.hadoop:hadoop-yarn-server-resourcemanager:$hadoop_version " ) {
55+ // old mssql vulnerabilities CVE-2025-59250
56+ exclude group : " com.microsoft.sqlserver" , module : " mssql-jdbc"
57+ }
58+ // add manually higher version to resolve CVE-2025-59250
59+ runtimeOnly (" com.microsoft.sqlserver:mssql-jdbc:12.2.0.jre11" )
5360 runtimeOnly (" org.apache.hbase:hbase-client:$hbase_version " )
5461 runtimeOnly (" org.apache.calcite.avatica:avatica-core:$avatica_version " )
5562 // these exlusions were inherit from hive-exec-3.1.3.pom
You can’t perform that action at this time.
0 commit comments