[
https://issues.apache.org/jira/browse/HADOOP-19632?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=18020425#comment-18020425
]
ASF GitHub Bot commented on HADOOP-19632:
-----------------------------------------
pjfanning commented on PR #7836:
URL: https://github.com/apache/hadoop/pull/7836#issuecomment-3293253190
@steveloughran https://github.com/apache/hadoop/pull/7965 seems to be a more
accurate attempt at this.
I also have https://github.com/apache/hadoop/pull/7870 which also fixes the
CVE by upgrading a 9.x patch that was specially released with the CVE fix.
> Upgrade nimbusds to 10.0.2
> --------------------------
>
> Key: HADOOP-19632
> URL: https://issues.apache.org/jira/browse/HADOOP-19632
> Project: Hadoop Common
> Issue Type: Improvement
> Affects Versions: 3.4.1
> Reporter: Ananya Singh
> Assignee: Ananya Singh
> Priority: Major
> Labels: pull-request-available
>
> Includes fix for CVE-2025-53864
--
This message was sent by Atlassian Jira
(v8.20.10#820010)
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]