tez/0.10.4-r7: cve remediation #52973
Merged
Octo STS / ci-cve-scan
failed
May 13, 2025 in 0s
CVE scan report
CVE scan report
Details
aarch64/tez-0.10.4-r8.apk
├── 📄 /usr/share/java/tez/lib/jetty-http-9.4.53.v20231009.jar
│ 📦 jetty-http 9.4.53.v20231009 (java-archive)
│ Medium CVE-2024-6763 GHSA-qh8g-58pp-2wxh fixed in 12.0.12
├── 📄 /usr/share/java/tez/lib/jetty-server-9.4.53.v20231009.jar
│ 📦 jetty-server 9.4.53.v20231009 (java-archive)
│ Medium CVE-2024-8184 GHSA-g8m5-722r-8whq fixed in 9.4.56
│ High CVE-2024-13009 GHSA-q4rv-gq96-w7c5 fixed in 9.4.57.v20241219
└── 📄 /usr/share/java/tez/lib/netty-handler-4.1.100.Final.jar
📦 netty-handler 4.1.100.Final (java-archive)
High CVE-2025-24970 GHSA-4g8c-wm8x-jfhw fixed in 4.1.118.Final
x86_64/tez-0.10.4-r8.apk
├── 📄 /usr/share/java/tez/lib/jetty-http-9.4.53.v20231009.jar
│ 📦 jetty-http 9.4.53.v20231009 (java-archive)
│ Medium CVE-2024-6763 GHSA-qh8g-58pp-2wxh fixed in 12.0.12
├── 📄 /usr/share/java/tez/lib/jetty-server-9.4.53.v20231009.jar
│ 📦 jetty-server 9.4.53.v20231009 (java-archive)
│ Medium CVE-2024-8184 GHSA-g8m5-722r-8whq fixed in 9.4.56
│ High CVE-2024-13009 GHSA-q4rv-gq96-w7c5 fixed in 9.4.57.v20241219
└── 📄 /usr/share/java/tez/lib/netty-handler-4.1.100.Final.jar
📦 netty-handler 4.1.100.Final (java-archive)
High CVE-2025-24970 GHSA-4g8c-wm8x-jfhw fixed in 4.1.118.Final
Loading