Skip to content

Commit

Permalink
[fix][sec] Upgrade Jetty to 9.4.54.v20240208 to address CVE-2024-22201 (
Browse files Browse the repository at this point in the history
apache#22144)

(cherry picked from commit e3a081e)
(cherry picked from commit 93a4457)
  • Loading branch information
lhotari authored and mukesh-ctds committed Mar 6, 2024
1 parent ca998b8 commit a8f7008
Show file tree
Hide file tree
Showing 3 changed files with 28 additions and 28 deletions.
38 changes: 19 additions & 19 deletions distribution/server/src/assemble/LICENSE.bin.txt
Original file line number Diff line number Diff line change
Expand Up @@ -382,25 +382,25 @@ The Apache Software License, Version 2.0
- org.asynchttpclient-async-http-client-2.12.1.jar
- org.asynchttpclient-async-http-client-netty-utils-2.12.1.jar
* Jetty
- org.eclipse.jetty-jetty-client-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-continuation-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-http-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-io-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-proxy-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-security-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-server-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-servlet-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-servlets-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-util-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-util-ajax-9.4.53.v20231009.jar
- org.eclipse.jetty.websocket-javax-websocket-client-impl-9.4.53.v20231009.jar
- org.eclipse.jetty.websocket-websocket-api-9.4.53.v20231009.jar
- org.eclipse.jetty.websocket-websocket-client-9.4.53.v20231009.jar
- org.eclipse.jetty.websocket-websocket-common-9.4.53.v20231009.jar
- org.eclipse.jetty.websocket-websocket-server-9.4.53.v20231009.jar
- org.eclipse.jetty.websocket-websocket-servlet-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-alpn-conscrypt-server-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-alpn-server-9.4.53.v20231009.jar
- org.eclipse.jetty-jetty-client-9.4.54.v20240208.jar
- org.eclipse.jetty-jetty-continuation-9.4.54.v20240208.jar
- org.eclipse.jetty-jetty-http-9.4.54.v20240208.jar
- org.eclipse.jetty-jetty-io-9.4.54.v20240208.jar
- org.eclipse.jetty-jetty-proxy-9.4.54.v20240208.jar
- org.eclipse.jetty-jetty-security-9.4.54.v20240208.jar
- org.eclipse.jetty-jetty-server-9.4.54.v20240208.jar
- org.eclipse.jetty-jetty-servlet-9.4.54.v20240208.jar
- org.eclipse.jetty-jetty-servlets-9.4.54.v20240208.jar
- org.eclipse.jetty-jetty-util-9.4.54.v20240208.jar
- org.eclipse.jetty-jetty-util-ajax-9.4.54.v20240208.jar
- org.eclipse.jetty.websocket-javax-websocket-client-impl-9.4.54.v20240208.jar
- org.eclipse.jetty.websocket-websocket-api-9.4.54.v20240208.jar
- org.eclipse.jetty.websocket-websocket-client-9.4.54.v20240208.jar
- org.eclipse.jetty.websocket-websocket-common-9.4.54.v20240208.jar
- org.eclipse.jetty.websocket-websocket-server-9.4.54.v20240208.jar
- org.eclipse.jetty.websocket-websocket-servlet-9.4.54.v20240208.jar
- org.eclipse.jetty-jetty-alpn-conscrypt-server-9.4.54.v20240208.jar
- org.eclipse.jetty-jetty-alpn-server-9.4.54.v20240208.jar
* SnakeYaml -- org.yaml-snakeyaml-2.0.jar
* RocksDB - org.rocksdb-rocksdbjni-7.9.2.jar
* Google Error Prone Annotations - com.google.errorprone-error_prone_annotations-2.5.1.jar
Expand Down
16 changes: 8 additions & 8 deletions distribution/shell/src/assemble/LICENSE.bin.txt
Original file line number Diff line number Diff line change
Expand Up @@ -395,14 +395,14 @@ The Apache Software License, Version 2.0
- async-http-client-2.12.1.jar
- async-http-client-netty-utils-2.12.1.jar
* Jetty
- jetty-client-9.4.53.v20231009.jar
- jetty-http-9.4.53.v20231009.jar
- jetty-io-9.4.53.v20231009.jar
- jetty-util-9.4.53.v20231009.jar
- javax-websocket-client-impl-9.4.53.v20231009.jar
- websocket-api-9.4.53.v20231009.jar
- websocket-client-9.4.53.v20231009.jar
- websocket-common-9.4.53.v20231009.jar
- jetty-client-9.4.54.v20240208.jar
- jetty-http-9.4.54.v20240208.jar
- jetty-io-9.4.54.v20240208.jar
- jetty-util-9.4.54.v20240208.jar
- javax-websocket-client-impl-9.4.54.v20240208.jar
- websocket-api-9.4.54.v20240208.jar
- websocket-client-9.4.54.v20240208.jar
- websocket-common-9.4.54.v20240208.jar
* SnakeYaml -- snakeyaml-2.0.jar
* Google Error Prone Annotations - error_prone_annotations-2.5.1.jar
* Javassist -- javassist-3.25.0-GA.jar
Expand Down
2 changes: 1 addition & 1 deletion pom.xml
Original file line number Diff line number Diff line change
Expand Up @@ -142,7 +142,7 @@ flexible messaging model and an intuitive client API.</description>
<curator.version>5.1.0</curator.version>
<netty.version>4.1.100.Final</netty.version>
<netty-iouring.version>0.0.21.Final</netty-iouring.version>
<jetty.version>9.4.53.v20231009</jetty.version>
<jetty.version>9.4.54.v20240208</jetty.version>
<conscrypt.version>2.5.2</conscrypt.version>
<jersey.version>2.34</jersey.version>
<athenz.version>1.10.50</athenz.version>
Expand Down

0 comments on commit a8f7008

Please sign in to comment.