hive icon indicating copy to clipboard operation
hive copied to clipboard

HIVE-28577: Upgrade protobuf version to 3.25.5 to fix CVE

Open Aggarwal-Raghav opened this issue 4 months ago • 3 comments

What changes were proposed in this pull request?

Upgrading protobuf version to 3.25.5

Why are the changes needed?

To fix CVE: CVE-2024-7254 and to be in sync with TEZ (master branch) protobuf version as well.

Does this PR introduce any user-facing change?

NO

Is the change a dependency upgrade?

YES dependency_tree.txt

How was this patch tested?

Will see output of Jenkins

Aggarwal-Raghav avatar Oct 15 '24 07:10 Aggarwal-Raghav