!3 [sec] Resolve CVE-2023-32697

From: @wang-jialing218 
Reviewed-by: @hu-zongtang 
Signed-off-by: @hu-zongtang
This commit is contained in:
openeuler-ci-bot 2023-08-25 08:27:39 +00:00 committed by Gitee
commit 698317d8c9
No known key found for this signature in database
GPG Key ID: 173E9B9CA92EEF8F
2 changed files with 22 additions and 1 deletions

View File

@ -0,0 +1,17 @@
Index: pom.xml
IDEA additional info:
Subsystem: com.intellij.openapi.diff.impl.patch.CharsetEP
<+>UTF-8
===================================================================
diff --git a/pom.xml b/pom.xml
--- a/pom.xml (revision c7cbce922f07ac80a08f58eb04786e2e91fc52b2)
+++ b/pom.xml (date 1692695814239)
@@ -149,7 +149,7 @@
<joda.version>2.10.5</joda.version>
<jclouds.version>2.5.0</jclouds.version>
<guice.version>5.1.0</guice.version>
- <sqlite-jdbc.version>3.8.11.2</sqlite-jdbc.version>
+ <sqlite-jdbc.version>3.42.0.0</sqlite-jdbc.version>
<mysql-jdbc.version>8.0.11</mysql-jdbc.version>
<postgresql-jdbc.version>42.4.1</postgresql-jdbc.version>
<clickhouse-jdbc.version>0.3.2</clickhouse-jdbc.version>

View File

@ -11,6 +11,7 @@ Group: Applications/Message
URL: https://pulsar.apache.org
Source0: https://archive.apache.org/dist/pulsar/pulsar-2.10.4/apache-pulsar-2.10.4-src.tar.gz
Patch0001: 0001-use-huawei-repository.patch
Patch0002: 0002-resolve-cve-2023-32697.patch
BuildRoot: /root/rpmbuild/BUILDROOT/
BuildRequires: java-1.8.0-openjdk-devel,maven,systemd
Requires: java-1.8.0-openjdk,systemd
@ -24,6 +25,7 @@ Pulsar is a distributed pub-sub messaging platform with a very flexible messagin
%setup -q -n apache-pulsar-%{version}-src
%patch0001 -p1
%patch0002 -p1
%build
mvn clean install -Pcore-modules,-main -DskipTests
@ -50,4 +52,6 @@ exit 0
%changelog
* Fri Aug 11 2023 Jialing Wang <wangjialing@cmss.chinamobile.com> - 2.10.4-1
- init puslar spec
- init puslar spec
* Fri Aug 24 2023 Jialing Wang <wangjialing@cmss.chinamobile.com> - 2.10.4-2
- resovle Cve-2023-32697