NIFI-12621 Upgraded AWS SDK from 2.20.148 to 2.23.3

- Upgraded AWS SDK from 1.12.573 to 1.12.637
- Added dependency check suppression to correct identification of newer ion-java library

Signed-off-by: Pierre Villard <pierre.villard.fr@gmail.com>

This closes #8257.
This commit is contained in:
exceptionfactory 2024-01-16 14:00:45 -06:00 committed by Pierre Villard
parent eb36052bf2
commit 1864a370bb
No known key found for this signature in database
GPG Key ID: F92A93B30C07C6D5
2 changed files with 7 additions and 2 deletions

View File

@ -449,4 +449,9 @@
<packageUrl regex="true">^pkg:maven/com\.azure/.*$</packageUrl>
<cve>CVE-2023-36052</cve>
</suppress>
<suppress>
<notes>software.amazon.ion:ion-java is newer than com.amazonaws.ion:ion-java and does not share the same vulnerabilities</notes>
<packageUrl regex="true">^pkg:maven/software\.amazon\.ion/ion\-java@.*$</packageUrl>
<cpe>cpe:/a:amazon:ion</cpe>
</suppress>
</suppressions>

View File

@ -108,8 +108,8 @@
<project.build.sourceEncoding>UTF-8</project.build.sourceEncoding>
<project.reporting.outputEncoding>UTF-8</project.reporting.outputEncoding>
<inceptionYear>2014</inceptionYear>
<com.amazonaws.version>1.12.573</com.amazonaws.version>
<software.amazon.awssdk.version>2.20.148</software.amazon.awssdk.version>
<com.amazonaws.version>1.12.637</com.amazonaws.version>
<software.amazon.awssdk.version>2.23.3</software.amazon.awssdk.version>
<gson.version>2.10.1</gson.version>
<io.fabric8.kubernetes.client.version>6.9.2</io.fabric8.kubernetes.client.version>
<kotlin.version>1.9.10</kotlin.version>