Skip to content

Pulsar Version addressing CVE-2024-53990 #23849

Answered by lhotari
sbandaru asked this question in Q&A
Discussion options

You must be logged in to vote

It's noted here that a fixed version addressing CVE-2024-53990 will be available in 4.0.2 , when is this expected to be released? @lhotari

The next set of Apache Pulsar releases are currently in release validation and voting phase:
Release Apache Pulsar 3.0.9 based on 3.0.9-candidate-2
Release Apache Pulsar 3.3.4 based on 3.3.4-candidate-2
Release Apache Pulsar 4.0.2 based on 4.0.2-candidate-3 (updated)

According to the Apache release policy, votes are needed from 3 PMC members so that we get these released. There's currently 1 binding vote and I can do one binding vote. There's one remaining that we need from one of the 43 Apache Pulsar PMC members (/cc @nicoloboschi @eolivelli).

Usual…

Replies: 2 comments 5 replies

Comment options

You must be logged in to vote
1 reply
@lhotari
Comment options

lhotari Jan 20, 2025
Collaborator

Answer selected by lhotari
Comment options

You must be logged in to vote
4 replies
@lhotari
Comment options

lhotari Jan 17, 2025
Collaborator

@lhotari
Comment options

lhotari Jan 17, 2025
Collaborator

@lhotari
Comment options

lhotari Jan 20, 2025
Collaborator

@sbandaru
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants