Skip to content

fixed build errors and changed patch-file

f44d663
Select commit
Loading
Failed to load commit list.
Merged

tez/0.10.4-r7: cve remediation #52973

fixed build errors and changed patch-file
f44d663
Select commit
Loading
Failed to load commit list.
Octo STS / ci-cve-scan failed May 13, 2025 in 0s

CVE scan report

CVE scan report

Details

aarch64/tez-0.10.4-r8.apk

├── 📄 /usr/share/java/tez/lib/jetty-http-9.4.53.v20231009.jar
│       📦 jetty-http 9.4.53.v20231009 (java-archive)
│           Medium CVE-2024-6763 GHSA-qh8g-58pp-2wxh fixed in 12.0.12
├── 📄 /usr/share/java/tez/lib/jetty-server-9.4.53.v20231009.jar
│       📦 jetty-server 9.4.53.v20231009 (java-archive)
│           Medium CVE-2024-8184 GHSA-g8m5-722r-8whq fixed in 9.4.56
│           High CVE-2024-13009 GHSA-q4rv-gq96-w7c5 fixed in 9.4.57.v20241219
└── 📄 /usr/share/java/tez/lib/netty-handler-4.1.100.Final.jar
        📦 netty-handler 4.1.100.Final (java-archive)
            High CVE-2025-24970 GHSA-4g8c-wm8x-jfhw fixed in 4.1.118.Final

x86_64/tez-0.10.4-r8.apk

├── 📄 /usr/share/java/tez/lib/jetty-http-9.4.53.v20231009.jar
│       📦 jetty-http 9.4.53.v20231009 (java-archive)
│           Medium CVE-2024-6763 GHSA-qh8g-58pp-2wxh fixed in 12.0.12
├── 📄 /usr/share/java/tez/lib/jetty-server-9.4.53.v20231009.jar
│       📦 jetty-server 9.4.53.v20231009 (java-archive)
│           Medium CVE-2024-8184 GHSA-g8m5-722r-8whq fixed in 9.4.56
│           High CVE-2024-13009 GHSA-q4rv-gq96-w7c5 fixed in 9.4.57.v20241219
└── 📄 /usr/share/java/tez/lib/netty-handler-4.1.100.Final.jar
        📦 netty-handler 4.1.100.Final (java-archive)
            High CVE-2025-24970 GHSA-4g8c-wm8x-jfhw fixed in 4.1.118.Final