From 65ae3f742598028c47773765cff4f8967c5953d0 Mon Sep 17 00:00:00 2001 From: namrata1012 Date: Wed, 6 Sep 2023 16:13:31 -0700 Subject: [PATCH] Exclude vuln snappy-java --- karma-commands/commands-bloom/pom.xml | 4 ++++ karma-common/pom.xml | 12 ++++++++++++ karma-jsonld/pom.xml | 6 ++++++ karma-mr/pom.xml | 24 ++++++++++++++++++++++-- karma-offline/pom.xml | 4 ++++ karma-semanticlabeling/pom.xml | 12 ++++++++++++ karma-spark/pom.xml | 12 ++++++++++++ 7 files changed, 72 insertions(+), 2 deletions(-) diff --git a/karma-commands/commands-bloom/pom.xml b/karma-commands/commands-bloom/pom.xml index 7654d7bdf..587ac9bf6 100644 --- a/karma-commands/commands-bloom/pom.xml +++ b/karma-commands/commands-bloom/pom.xml @@ -70,6 +70,10 @@ com.fasterxml.jackson.core jackson.core + + org.xerial.snappy + snappy-java + jackson-jaxrs org.codehaus.jackson diff --git a/karma-common/pom.xml b/karma-common/pom.xml index dea1eccfe..e2ce89e75 100644 --- a/karma-common/pom.xml +++ b/karma-common/pom.xml @@ -144,11 +144,23 @@ org.apache.avro avro 1.7.7 + + + org.xerial.snappy + snappy-java + + org.apache.avro avro-compiler 1.7.7 + + + org.xerial.snappy + snappy-java + + diff --git a/karma-jsonld/pom.xml b/karma-jsonld/pom.xml index 1b3623a51..bbfdb03c2 100644 --- a/karma-jsonld/pom.xml +++ b/karma-jsonld/pom.xml @@ -35,6 +35,12 @@ org.apache.spark spark-core_2.11 2.4.5 + + + org.xerial.snappy + snappy-java + + commons-cli diff --git a/karma-mr/pom.xml b/karma-mr/pom.xml index a6b1f9034..6539e0c58 100644 --- a/karma-mr/pom.xml +++ b/karma-mr/pom.xml @@ -238,6 +238,10 @@ com.microsoft.windowsazure.storage microsoft-windowsazure-storage-sdk + + org.xerial.snappy + snappy-java + com.fasterxml.jackson.core jackson.core @@ -356,7 +360,13 @@ org.apache.avro avro-mapred ${avro.version} - hadoop2 + hadoop2 + + + org.xerial.snappy + snappy-java + + @@ -421,6 +431,10 @@ hadoop-common ${hadoop.version} + + org.xerial.snappy + snappy-java + com.microsoft.windowsazure.storage microsoft-windowsazure-storage-sdk @@ -543,7 +557,13 @@ org.apache.avro avro-mapred ${avro.version} - hadoop2 + hadoop2 + + + org.xerial.snappy + snappy-java + + diff --git a/karma-offline/pom.xml b/karma-offline/pom.xml index f3a7c69f8..ccb134959 100644 --- a/karma-offline/pom.xml +++ b/karma-offline/pom.xml @@ -136,6 +136,10 @@ com.microsoft.windowsazure.storage microsoft-windowsazure-storage-sdk + + org.xerial.snappy + snappy-java + com.fasterxml.jackson.core jackson.core diff --git a/karma-semanticlabeling/pom.xml b/karma-semanticlabeling/pom.xml index 2173b311c..c5ac2438c 100644 --- a/karma-semanticlabeling/pom.xml +++ b/karma-semanticlabeling/pom.xml @@ -74,6 +74,12 @@ org.apache.spark spark-mllib_2.11 2.2.0 + + + org.xerial.snappy + snappy-java + + @@ -81,6 +87,12 @@ spark-sql_2.12 3.0.0 provided + + + org.xerial.snappy + snappy-java + + diff --git a/karma-spark/pom.xml b/karma-spark/pom.xml index a8d7d32cc..a310dd285 100644 --- a/karma-spark/pom.xml +++ b/karma-spark/pom.xml @@ -170,6 +170,12 @@ org.apache.spark spark-core${spark.scala.version} ${spark.version} + + + org.xerial.snappy + snappy-java + + @@ -191,6 +197,12 @@ org.apache.spark spark-core${spark.scala.version} ${spark.version} + + + org.xerial.snappy + snappy-java + +