[ 
https://issues.apache.org/jira/browse/HADOOP-19632?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=18020425#comment-18020425
 ] 

ASF GitHub Bot commented on HADOOP-19632:
-----------------------------------------

pjfanning commented on PR #7836:
URL: https://github.com/apache/hadoop/pull/7836#issuecomment-3293253190

   @steveloughran https://github.com/apache/hadoop/pull/7965 seems to be a more 
accurate attempt at this.
   
   I also have https://github.com/apache/hadoop/pull/7870 which also fixes the 
CVE by upgrading a 9.x patch that was specially released with the CVE fix.




> Upgrade nimbusds to 10.0.2
> --------------------------
>
>                 Key: HADOOP-19632
>                 URL: https://issues.apache.org/jira/browse/HADOOP-19632
>             Project: Hadoop Common
>          Issue Type: Improvement
>    Affects Versions: 3.4.1
>            Reporter: Ananya Singh
>            Assignee: Ananya Singh
>            Priority: Major
>              Labels: pull-request-available
>
> Includes fix for CVE-2025-53864



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to