!10 [sync] PR-2: Upgrade to 1.5.4 for fix cves
From: @openeuler-sync-bot Reviewed-by: @caodongxia Signed-off-by: @caodongxia
This commit is contained in:
commit
1f004366fd
Binary file not shown.
BIN
jettison-1.5.4.tar.gz
Normal file
BIN
jettison-1.5.4.tar.gz
Normal file
Binary file not shown.
@ -1,15 +0,0 @@
|
|||||||
--- a/pom.xml
|
|
||||||
+++ b/pom.xml
|
|
||||||
@@ -26,9 +26,9 @@
|
|
||||||
<version>1.0.1</version>
|
|
||||||
</dependency>
|
|
||||||
<dependency>
|
|
||||||
- <groupId>woodstox</groupId>
|
|
||||||
- <artifactId>wstx-asl</artifactId>
|
|
||||||
- <version>3.2.2</version>
|
|
||||||
+ <groupId>org.codehaus.woodstox</groupId>
|
|
||||||
+ <artifactId>woodstox-core-asl</artifactId>
|
|
||||||
+ <version>4.1.2</version>
|
|
||||||
<scope>test</scope>
|
|
||||||
</dependency>
|
|
||||||
</dependencies>
|
|
||||||
@ -1,12 +1,11 @@
|
|||||||
Name: jettison
|
Name: jettison
|
||||||
Version: 1.3.7
|
Version: 1.5.4
|
||||||
Release: 1
|
Release: 1
|
||||||
Summary: A JSON StAX implementation
|
Summary: A JSON StAX implementation
|
||||||
License: ASL 2.0
|
License: ASL 2.0
|
||||||
URL: https://github.com/codehaus/jettison
|
URL: https://github.com/codehaus/jettison
|
||||||
BuildArch: noarch
|
BuildArch: noarch
|
||||||
Source0: https://github.com/codehaus/jettison/archive/%{name}-%{version}.tar.gz
|
Source0: https://github.com/codehaus/jettison/archive/refs/tags/%{name}-%{version}.tar.gz
|
||||||
Patch0: %{name}-update-woodstox-version.patch
|
|
||||||
BuildRequires: maven-local mvn(junit:junit) mvn(org.apache.felix:maven-bundle-plugin)
|
BuildRequires: maven-local mvn(junit:junit) mvn(org.apache.felix:maven-bundle-plugin)
|
||||||
BuildRequires: mvn(org.codehaus:codehaus-parent:pom:)
|
BuildRequires: mvn(org.codehaus:codehaus-parent:pom:)
|
||||||
BuildRequires: mvn(org.codehaus.woodstox:woodstox-core-asl) mvn(stax:stax-api)
|
BuildRequires: mvn(org.codehaus.woodstox:woodstox-core-asl) mvn(stax:stax-api)
|
||||||
@ -22,11 +21,10 @@ Summary: Javadocs for %{name}
|
|||||||
This package contains the API documentation for %{name}.
|
This package contains the API documentation for %{name}.
|
||||||
|
|
||||||
%prep
|
%prep
|
||||||
%setup -q -n %{name}-%{name}-%{version}
|
%autosetup -n %{name}-%{name}-%{version} -p1
|
||||||
%patch0 -p1
|
|
||||||
%pom_xpath_remove pom:build/pom:extensions
|
|
||||||
%pom_remove_plugin :maven-release-plugin
|
%pom_remove_plugin :maven-release-plugin
|
||||||
%pom_xpath_remove pom:Private-Package
|
%pom_remove_plugin :nexus-staging-maven-plugin
|
||||||
|
%pom_remove_plugin :maven-enforcer-plugin
|
||||||
|
|
||||||
%build
|
%build
|
||||||
%mvn_build -f
|
%mvn_build -f
|
||||||
@ -35,11 +33,15 @@ This package contains the API documentation for %{name}.
|
|||||||
%mvn_install
|
%mvn_install
|
||||||
|
|
||||||
%files -f .mfiles
|
%files -f .mfiles
|
||||||
%doc src/main/resources/META-INF/LICENSE
|
%license LICENSE
|
||||||
|
|
||||||
%files javadoc -f .mfiles-javadoc
|
%files javadoc -f .mfiles-javadoc
|
||||||
%doc src/main/resources/META-INF/LICENSE
|
%license LICENSE
|
||||||
|
|
||||||
%changelog
|
%changelog
|
||||||
|
* Thu Dec 07 2023 yaoxin <yao_xin001@hoperun.com> - 1.5.4-1
|
||||||
|
- Upgrade to 1.5.4 for fix cves: CVE-2022-40149,CVE-2022-40150,
|
||||||
|
CVE-2022-45685,CVE-2022-45693 and CVE-2023-1436
|
||||||
|
|
||||||
* Sat Aug 1 2020 Jeffery.Gao <gaojianxing@huawei.com> - 1.3.7-1
|
* Sat Aug 1 2020 Jeffery.Gao <gaojianxing@huawei.com> - 1.3.7-1
|
||||||
- Package init
|
- Package init
|
||||||
|
|||||||
Loading…
x
Reference in New Issue
Block a user