Skip to content

Commit fa813b5

Browse files
lhotariTechnoboy-
authored andcommitted
[fix][sec] Upgrade Jetty to 9.4.54.v20240208 to address CVE-2024-22201 (#22144)
1 parent 991068f commit fa813b5

File tree

3 files changed

+28
-28
lines changed

3 files changed

+28
-28
lines changed

distribution/server/src/assemble/LICENSE.bin.txt

Lines changed: 19 additions & 19 deletions
Original file line numberDiff line numberDiff line change
@@ -382,25 +382,25 @@ The Apache Software License, Version 2.0
382382
- org.asynchttpclient-async-http-client-2.12.1.jar
383383
- org.asynchttpclient-async-http-client-netty-utils-2.12.1.jar
384384
* Jetty
385-
- org.eclipse.jetty-jetty-client-9.4.53.v20231009.jar
386-
- org.eclipse.jetty-jetty-continuation-9.4.53.v20231009.jar
387-
- org.eclipse.jetty-jetty-http-9.4.53.v20231009.jar
388-
- org.eclipse.jetty-jetty-io-9.4.53.v20231009.jar
389-
- org.eclipse.jetty-jetty-proxy-9.4.53.v20231009.jar
390-
- org.eclipse.jetty-jetty-security-9.4.53.v20231009.jar
391-
- org.eclipse.jetty-jetty-server-9.4.53.v20231009.jar
392-
- org.eclipse.jetty-jetty-servlet-9.4.53.v20231009.jar
393-
- org.eclipse.jetty-jetty-servlets-9.4.53.v20231009.jar
394-
- org.eclipse.jetty-jetty-util-9.4.53.v20231009.jar
395-
- org.eclipse.jetty-jetty-util-ajax-9.4.53.v20231009.jar
396-
- org.eclipse.jetty.websocket-javax-websocket-client-impl-9.4.53.v20231009.jar
397-
- org.eclipse.jetty.websocket-websocket-api-9.4.53.v20231009.jar
398-
- org.eclipse.jetty.websocket-websocket-client-9.4.53.v20231009.jar
399-
- org.eclipse.jetty.websocket-websocket-common-9.4.53.v20231009.jar
400-
- org.eclipse.jetty.websocket-websocket-server-9.4.53.v20231009.jar
401-
- org.eclipse.jetty.websocket-websocket-servlet-9.4.53.v20231009.jar
402-
- org.eclipse.jetty-jetty-alpn-conscrypt-server-9.4.53.v20231009.jar
403-
- org.eclipse.jetty-jetty-alpn-server-9.4.53.v20231009.jar
385+
- org.eclipse.jetty-jetty-client-9.4.54.v20240208.jar
386+
- org.eclipse.jetty-jetty-continuation-9.4.54.v20240208.jar
387+
- org.eclipse.jetty-jetty-http-9.4.54.v20240208.jar
388+
- org.eclipse.jetty-jetty-io-9.4.54.v20240208.jar
389+
- org.eclipse.jetty-jetty-proxy-9.4.54.v20240208.jar
390+
- org.eclipse.jetty-jetty-security-9.4.54.v20240208.jar
391+
- org.eclipse.jetty-jetty-server-9.4.54.v20240208.jar
392+
- org.eclipse.jetty-jetty-servlet-9.4.54.v20240208.jar
393+
- org.eclipse.jetty-jetty-servlets-9.4.54.v20240208.jar
394+
- org.eclipse.jetty-jetty-util-9.4.54.v20240208.jar
395+
- org.eclipse.jetty-jetty-util-ajax-9.4.54.v20240208.jar
396+
- org.eclipse.jetty.websocket-javax-websocket-client-impl-9.4.54.v20240208.jar
397+
- org.eclipse.jetty.websocket-websocket-api-9.4.54.v20240208.jar
398+
- org.eclipse.jetty.websocket-websocket-client-9.4.54.v20240208.jar
399+
- org.eclipse.jetty.websocket-websocket-common-9.4.54.v20240208.jar
400+
- org.eclipse.jetty.websocket-websocket-server-9.4.54.v20240208.jar
401+
- org.eclipse.jetty.websocket-websocket-servlet-9.4.54.v20240208.jar
402+
- org.eclipse.jetty-jetty-alpn-conscrypt-server-9.4.54.v20240208.jar
403+
- org.eclipse.jetty-jetty-alpn-server-9.4.54.v20240208.jar
404404
* SnakeYaml -- org.yaml-snakeyaml-2.0.jar
405405
* RocksDB - org.rocksdb-rocksdbjni-7.9.2.jar
406406
* Google Error Prone Annotations - com.google.errorprone-error_prone_annotations-2.5.1.jar

distribution/shell/src/assemble/LICENSE.bin.txt

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -395,14 +395,14 @@ The Apache Software License, Version 2.0
395395
- async-http-client-2.12.1.jar
396396
- async-http-client-netty-utils-2.12.1.jar
397397
* Jetty
398-
- jetty-client-9.4.53.v20231009.jar
399-
- jetty-http-9.4.53.v20231009.jar
400-
- jetty-io-9.4.53.v20231009.jar
401-
- jetty-util-9.4.53.v20231009.jar
402-
- javax-websocket-client-impl-9.4.53.v20231009.jar
403-
- websocket-api-9.4.53.v20231009.jar
404-
- websocket-client-9.4.53.v20231009.jar
405-
- websocket-common-9.4.53.v20231009.jar
398+
- jetty-client-9.4.54.v20240208.jar
399+
- jetty-http-9.4.54.v20240208.jar
400+
- jetty-io-9.4.54.v20240208.jar
401+
- jetty-util-9.4.54.v20240208.jar
402+
- javax-websocket-client-impl-9.4.54.v20240208.jar
403+
- websocket-api-9.4.54.v20240208.jar
404+
- websocket-client-9.4.54.v20240208.jar
405+
- websocket-common-9.4.54.v20240208.jar
406406
* SnakeYaml -- snakeyaml-2.0.jar
407407
* Google Error Prone Annotations - error_prone_annotations-2.5.1.jar
408408
* Javassist -- javassist-3.25.0-GA.jar

pom.xml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -142,7 +142,7 @@ flexible messaging model and an intuitive client API.</description>
142142
<curator.version>5.1.0</curator.version>
143143
<netty.version>4.1.104.Final</netty.version>
144144
<netty-iouring.version>0.0.24.Final</netty-iouring.version>
145-
<jetty.version>9.4.53.v20231009</jetty.version>
145+
<jetty.version>9.4.54.v20240208</jetty.version>
146146
<conscrypt.version>2.5.2</conscrypt.version>
147147
<jersey.version>2.34</jersey.version>
148148
<athenz.version>1.10.50</athenz.version>

0 commit comments

Comments
 (0)