Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Bug] switch to bcprov-jdk18on jar because the jdk15on one is not maintained and has security issues #5179

Open
2 tasks done
pjfanning opened this issue Sep 27, 2024 · 1 comment
Labels
bug Something isn't working

Comments

@pjfanning
Copy link
Contributor

pjfanning commented Sep 27, 2024

Search before asking

  • I searched the issues and found no similar issues.

Linkis Component

linkis-commons

Steps to reproduce

https://www.bouncycastle.org/download/bouncy-castle-java/#release-notes

CVES like https://github.com/apache/linkis/security/dependabot/111

Expected behavior

use secure jars

Your environment

  • Linkis version used: 1.1.2
  • Environment name and version:
    • cdh-5.14.2
    • hdp-3.1.5
    • hive-2.1.1
    • spark-3.2.1
    • scala-2.12.2
    • jdk 1.8.0_121
    • ....

Anything else

No response

Are you willing to submit a PR?

  • Yes I am willing to submit a PR!
@pjfanning pjfanning added the bug Something isn't working label Sep 27, 2024
Copy link

😊 Welcome to the Apache Linkis community!!

We are glad that you are contributing by opening this issue.

Please make sure to include all the relevant context.
We will be here shortly.

If you are interested in contributing to our website project, please let us know!
You can check out our contributing guide on
👉 How to Participate in Project Contribution.

Community

WeChat Assistant WeChat Public Account

Mailing Lists

Name Description Subscribe Unsubscribe Archive
[email protected] community activity information subscribe unsubscribe archive

@pjfanning pjfanning mentioned this issue Sep 27, 2024
7 tasks
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

No branches or pull requests

1 participant