Skip to content

Commit 8ef0071

Browse files
ShahimSharafudeenyingsu00
authored andcommitted
Upgrade aws-java-sdk version to 1.12.782 in response to CVE-2024-21634
1 parent 22acbde commit 8ef0071

File tree

2 files changed

+27
-2
lines changed

2 files changed

+27
-2
lines changed

pom.xml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -48,7 +48,7 @@
4848
<dep.packaging.version>${dep.airlift.version}</dep.packaging.version>
4949
<dep.slice.version>0.38</dep.slice.version>
5050
<dep.testing-mysql-server-5.version>0.6</dep.testing-mysql-server-5.version>
51-
<dep.aws-sdk.version>1.12.560</dep.aws-sdk.version>
51+
<dep.aws-sdk.version>1.12.782</dep.aws-sdk.version>
5252
<dep.okhttp.version>3.9.0</dep.okhttp.version>
5353
<dep.jdbi3.version>3.4.0</dep.jdbi3.version>
5454
<dep.oracle.version>19.3.0.0</dep.oracle.version>

presto-accumulo/pom.xml

Lines changed: 26 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@
1616
<air.main.basedir>${project.parent.basedir}</air.main.basedir>
1717
<dep.accumulo.version>1.10.1</dep.accumulo.version>
1818
<dep.curator.version>2.12.0</dep.curator.version>
19-
<dep.reload4j.version>1.2.18.3</dep.reload4j.version>
19+
<dep.reload4j.version>1.2.22</dep.reload4j.version>
2020
</properties>
2121

2222
<dependencyManagement>
@@ -271,6 +271,14 @@
271271
<version>${dep.reload4j.version}</version>
272272
</dependency>
273273

274+
<!-- log4j removed from reload4j version 1.2.18.4-->
275+
<dependency>
276+
<groupId>org.apache.logging.log4j</groupId>
277+
<artifactId>log4j-1.2-api</artifactId>
278+
<version>2.24.3</version>
279+
<scope>test</scope>
280+
</dependency>
281+
274282
<!-- Presto SPI -->
275283
<dependency>
276284
<groupId>com.facebook.presto</groupId>
@@ -390,4 +398,21 @@
390398
</build>
391399
</profile>
392400
</profiles>
401+
402+
<build>
403+
<plugins>
404+
<plugin>
405+
<groupId>org.basepom.maven</groupId>
406+
<artifactId>duplicate-finder-maven-plugin</artifactId>
407+
<configuration>
408+
<ignoredResourcePatterns>
409+
<ignoredResourcePattern>org/apache/log4j/xml/log4j.dtd</ignoredResourcePattern>
410+
</ignoredResourcePatterns>
411+
<ignoredClassPatterns>
412+
<ignoredClassPattern>org.apache.log4j.*</ignoredClassPattern>
413+
</ignoredClassPatterns>
414+
</configuration>
415+
</plugin>
416+
</plugins>
417+
</build>
393418
</project>

0 commit comments

Comments
 (0)