Skip to content

Conversation

@FerArribas14
Copy link
Contributor

What changes were proposed in this pull request?

Ranger 4939: Upgrade Elasticsearch version to 7.17.24

Elasticsearch version 7.10.2 is affected by a high vulnerability CVE-2023-31418. You must upgrade to version 7.17.22 to fix this vulnerability. 

For the moment, it is not easy to upgrade to a more current version than 7.17.22 since the Elastic API is not backwards compatible and changes the implementation a lot. 

How was this patch tested?

By running ./build_ranger_using_docker.sh and unit test ElasticSearchAccessAuditsServiceTest
ExampleDoc
DocsElastic
AuditsApacheRanger

@kumaab kumaab changed the title Ranger 4939: Upgrade Elasticsearch version to 7.17.24 RANGER-4939: Upgrade Elasticsearch version to 7.17.24 Jan 22, 2025
@kumaab
Copy link
Contributor

kumaab commented Jan 22, 2025

The patch has been reviewed here as well: https://reviews.apache.org/r/75217/

Copy link
Contributor

@mneethiraj mneethiraj left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@kumaab - can you trigger CI checks for this PR? Once checks complete successfully, this PR can be merged.

@kumaab kumaab closed this Jan 23, 2025
@kumaab kumaab reopened this Jan 23, 2025
@kumaab
Copy link
Contributor

kumaab commented Jan 24, 2025

@FerArribas14 Thank for you the patch, the checks are failing due to missing commits from master.
Can you please rebase the PR ?

@mneethiraj mneethiraj changed the title RANGER-4939: Upgrade Elasticsearch version to 7.17.24 RANGER-4939: Upgrade Elasticsearch version to 7.17.29 Jan 7, 2026
@mneethiraj mneethiraj merged commit ab3d058 into apache:master Jan 7, 2026
3 of 4 checks passed
mneethiraj pushed a commit that referenced this pull request Jan 7, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants