Uploaded image for project: 'SET - Setups'
  1. SET - Setups
  2. SET-171

Update c3p0 to version 0.9.5.4 due to 3rd party vulnerability issues (CVE-2019-5427, CVE-2018-20433)

    XMLWordPrintable

Details

    • Fix
    • Status: Released (View Workflow)
    • Minor
    • Resolution: Fixed
    • 1.12.9
    • 1.12.10
    • None

    Description

      Current Situation

      Desired Behavior

      • Due to vulnerability Issues of older c3p0 releases the JOC Cockpit and JobScheduler should use the current version 0.9.5.4 that fixes the issues.

      Maintainer Notes

      • Release 1.11 that includes c3p0 version 0.9.5.2 is at its end of life. Therefore no maintenance release is provided.
      • Users of release 1.11 should therefore upgrade to release 1.12.

      Attachments

        Activity

          People

            sp Santiago Aucejo Petzoldt
            sp Santiago Aucejo Petzoldt
            Oliver Haufe Oliver Haufe
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: