From ca1744c287d17e4e899ba2914f4ecde1a41cec02 Mon Sep 17 00:00:00 2001 From: soagarwal1 Date: Thu, 23 Jan 2025 01:01:45 -0600 Subject: [PATCH] [PPP-5541] - Vulnerable Component: jackson-databind within htrace-core-3.1.0-incubating.jar --- shims/cdpdc71/driver/pom.xml | 21 +++++++-------------- shims/dataproc1421/driver/pom.xml | 16 ---------------- shims/dataproc1421/pom.xml | 4 ++-- shims/emr700/driver/pom.xml | 29 +++++++++++------------------ shims/hdi40/driver/pom.xml | 21 +++++++-------------- 5 files changed, 27 insertions(+), 64 deletions(-) diff --git a/shims/cdpdc71/driver/pom.xml b/shims/cdpdc71/driver/pom.xml index a3d5f5ac15..bcef0a9cfd 100644 --- a/shims/cdpdc71/driver/pom.xml +++ b/shims/cdpdc71/driver/pom.xml @@ -21,7 +21,7 @@ 1.10.99.7.1.4.0-203 3.1.1.7.1.9.0-387 2.4.17.7.1.9.0-387 - 3.1.3000.7.1.4.0-203 + 3.1.3000.7.1.9.0-387 5.1.0.7.1.4.0-203 0.16.0.7.1.4.0-203 1.10.99.7.1.4.0-203 @@ -284,6 +284,11 @@ hadoop-hdfs-client ${org.apache.hadoop.version} + + org.apache.hbase + hbase-mapreduce + ${org.apache.hbase.version} + com.hadoop.gplcompression hadoop-lzo @@ -588,10 +593,6 @@ org.slf4j slf4j-api - - org.apache.htrace - htrace-core4 - @@ -603,10 +604,6 @@ org.slf4j slf4j-api - - org.apache.htrace - htrace-core4 - @@ -648,10 +645,6 @@ org.slf4j slf4j-api - - org.apache.htrace - htrace-core4 - @@ -746,7 +739,7 @@ *:antlr-runtime,*:automaton,*:pig,*:parquet-pig,*:sqoop,*:joda-time,*:jython,*:gateway-cloud-bindings, - *:gateway-util-common,*:gateway-shell,*:gateway-i18n,*:aircompressor,*:netty-*,*:libthrift + *:gateway-util-common,*:gateway-shell,*:gateway-i18n,*:aircompressor,*:netty-*,*:libthrift,*:hbase-mapreduce false diff --git a/shims/dataproc1421/driver/pom.xml b/shims/dataproc1421/driver/pom.xml index 5e44fea951..80a7bf0fb9 100755 --- a/shims/dataproc1421/driver/pom.xml +++ b/shims/dataproc1421/driver/pom.xml @@ -406,10 +406,6 @@ org.slf4j slf4j-api - - org.apache.htrace - htrace-core4 - @@ -421,10 +417,6 @@ org.slf4j slf4j-api - - org.apache.htrace - htrace-core4 - @@ -447,10 +439,6 @@ org.slf4j slf4j-api - - org.apache.htrace - htrace-core4 - @@ -485,10 +473,6 @@ org.eclipse.jetty * - - org.apache.htrace - htrace-core4 - diff --git a/shims/dataproc1421/pom.xml b/shims/dataproc1421/pom.xml index 8a70ce75be..19b261db7f 100755 --- a/shims/dataproc1421/pom.xml +++ b/shims/dataproc1421/pom.xml @@ -18,7 +18,7 @@ hadoop2-2.2.24 - 2.2.0 + 2.6.1 1.1.1.3 1.11-8 0.17.0 @@ -37,7 +37,7 @@ 1.6 2.10.1 1.0 - 2.3.6 + 3.1.3 3.4.1 1.3.4 1.10.1 diff --git a/shims/emr700/driver/pom.xml b/shims/emr700/driver/pom.xml index 08d99f123e..9296181a3a 100644 --- a/shims/emr700/driver/pom.xml +++ b/shims/emr700/driver/pom.xml @@ -16,7 +16,7 @@ 1.12.0 3.1.3 5.2.1 - 2.4.17 + 2.6.1 3.3.6 1.6.1 1.4.7 @@ -476,6 +476,10 @@ org.apache.htrace htrace-core + + org.apache.hbase + hbase-mapreduce + @@ -530,10 +534,6 @@ org.slf4j slf4j-log4j12 - - org.apache.htrace - htrace-core4 - @@ -550,23 +550,16 @@ org.apache.hbase hbase-client ${org.apache.hbase.version} - - - org.apache.htrace - htrace-core4 - - org.apache.hbase hbase-common ${org.apache.hbase.version} - - - org.apache.htrace - htrace-core4 - - + + + org.apache.hbase + hbase-mapreduce + ${org.apache.hbase.version} @@ -676,7 +669,7 @@ - *:antlr-runtime,*:automaton,*:pig,*:sqoop,*:joda-time,*:jython,*:aircompressor,*:netty-*,software.amazon.awssdk:* + *:antlr-runtime,*:automaton,*:pig,*:sqoop,*:joda-time,*:jython,*:aircompressor,*:netty-*,software.amazon.awssdk:*,*:hbase-mapreduce false diff --git a/shims/hdi40/driver/pom.xml b/shims/hdi40/driver/pom.xml index d83e54eb56..1d751abbdb 100644 --- a/shims/hdi40/driver/pom.xml +++ b/shims/hdi40/driver/pom.xml @@ -20,7 +20,7 @@ 1.10.99.7.1.4.0-203 3.1.1.7.1.9.0-387 2.4.17.7.1.9.0-387 - 3.1.3000.7.1.4.0-203 + 3.1.3000.7.1.9.0-387 5.1.0.7.1.4.0-203 0.16.0.7.1.4.0-203 1.10.99.7.1.4.0-203 @@ -460,10 +460,6 @@ org.slf4j slf4j-api - - org.apache.htrace - htrace-core4 - @@ -475,10 +471,6 @@ org.slf4j slf4j-api - - org.apache.htrace - htrace-core4 - @@ -531,12 +523,13 @@ org.slf4j slf4j-api - - org.apache.htrace - htrace-core4 - + + org.apache.hbase + hbase-mapreduce + ${org.apache.hbase.version} + org.apache.oozie oozie-client @@ -642,7 +635,7 @@ *:antlr-runtime,*:automaton,*:parquet-pig, *:pig, *:sqoop,*:joda-time,*:jython,*:aircompressor,*:netty-*, - *:bcprov-jdk18on + *:bcprov-jdk18on,*:hbase-mapreduce false