From 2ffcf62f628c6f41e78eeb2dd64999d558b6f617 Mon Sep 17 00:00:00 2001 From: Lari Hotari Date: Fri, 15 Mar 2024 07:41:13 -0700 Subject: [PATCH] [fix][sec] Upgrade Zookeeper to 3.9.2 to address CVE-2024-23944 (#22275) --- distribution/server/src/assemble/LICENSE.bin.txt | 6 +++--- pom.xml | 2 +- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/distribution/server/src/assemble/LICENSE.bin.txt b/distribution/server/src/assemble/LICENSE.bin.txt index 545292f2ba85a..23b556a6a2231 100644 --- a/distribution/server/src/assemble/LICENSE.bin.txt +++ b/distribution/server/src/assemble/LICENSE.bin.txt @@ -495,9 +495,9 @@ The Apache Software License, Version 2.0 - io.vertx-vertx-web-common-4.3.8.jar - io.vertx-vertx-grpc-4.3.5.jar * Apache ZooKeeper - - org.apache.zookeeper-zookeeper-3.9.1.jar - - org.apache.zookeeper-zookeeper-jute-3.9.1.jar - - org.apache.zookeeper-zookeeper-prometheus-metrics-3.9.1.jar + - org.apache.zookeeper-zookeeper-3.9.2.jar + - org.apache.zookeeper-zookeeper-jute-3.9.2.jar + - org.apache.zookeeper-zookeeper-prometheus-metrics-3.9.2.jar * Snappy Java - org.xerial.snappy-snappy-java-1.1.10.5.jar * Google HTTP Client diff --git a/pom.xml b/pom.xml index 359ac8963cc8e..1f971dfa243e1 100644 --- a/pom.xml +++ b/pom.xml @@ -138,7 +138,7 @@ flexible messaging model and an intuitive client API. 1.26.0 4.16.4 - 3.9.1 + 3.9.2 1.5.0 1.10.0 1.1.10.5