CVE-2023-30601: Apache Cassandra: Privilege escalation when enabling FQL/Audit logs

2023-05-29 Thread Marcus Eriksson
Severity: important Affected versions: - Apache Cassandra 4.0.0 through 4.0.9 - Apache Cassandra 4.1.0 through 4.1.1 Description: Privilege escalation when enabling FQL/Audit logs allows user with JMX access to run arbitrary commands as the user running Apache Cassandra This issue affects Apac

[RELEASE] Apache Cassandra 4.1.2 released

2023-05-29 Thread Mick Semb Wever
The Cassandra team is pleased to announce the release of Apache Cassandra version 4.1.2. Apache Cassandra is a fully distributed database. It is the right choice when you need scalability and high availability without compromising performance. http://cassandra.apache.org/ Downloads of source an

[RELEASE] Apache Cassandra 4.0.10 released

2023-05-29 Thread Mick Semb Wever
The Cassandra team is pleased to announce the release of Apache Cassandra version 4.0.10. Apache Cassandra is a fully distributed database. It is the right choice when you need scalability and high availability without compromising performance. http://cassandra.apache.org/ Downloads of source a

[RESULT][VOTE] Release Apache Cassandra 4.1.2

2023-05-29 Thread Mick Semb Wever
> > The vote will be open for 72 hours (longer if needed). Everyone who has > tested the build is invited to vote. Votes by PMC members are considered > binding. A vote passes if there are at least three binding +1s and no -1's. > The vote passes with seven +1s (four binding).

[RESULT][VOTE] Release Apache Cassandra 4.0.10

2023-05-29 Thread Mick Semb Wever
> > The vote will be open for 72 hours (longer if needed). Everyone who has > tested the build is invited to vote. Votes by PMC members are considered > binding. A vote passes if there are at least three binding +1s and no -1's. > Vote passes with seven +1s (four binding).

Re: [VOTE] Release Apache Cassandra 4.1.2

2023-05-29 Thread Tommy Stendahl via dev
+1 nb -Original Message- From: Mick Semb Wever mailto:mick%20semb%20wever%20%3c...@apache.org%3e>> Reply-To: dev@cassandra.apache.org To: dev mailto:dev%20%3c...@cassandra.apache.org%3e>> Subject: [VOTE] Release Apache Cassandra 4.1.2 Date: Thu, 25 May 202

Re: [VOTE] Release Apache Cassandra 4.0.10

2023-05-29 Thread Tommy Stendahl via dev
+1 nb -Original Message- From: Mick Semb Wever mailto:mick%20semb%20wever%20%3c...@apache.org%3e>> Reply-To: dev@cassandra.apache.org To: dev mailto:dev%20%3c...@cassandra.apache.org%3e>> Subject: [VOTE] Release Apache Cassandra 4.0.10 Date: Thu, 25 May 20