diff options
author | Patrick Brady <pb071s@att.com> | 2018-09-17 12:52:55 -0700 |
---|---|---|
committer | Patrick Brady <pb071s@att.com> | 2018-09-21 09:31:27 -0700 |
commit | 28da5021fad45b2c4da1bd1b7db794863e5ef7f3 (patch) | |
tree | 4f7fa810ba8a782ab24017193c6afa75dc797b86 /appc-config | |
parent | 32780c70147bf7273f7f6a8d81de1a1efd68a92c (diff) |
Remove logback 1.1.3 security issue
cdp-pal and eelf are the dependencies using logback-classic
1.1.3. Need to use exclusions option in pom file
Change-Id: Id8f5817ec955e2b7b486bc0215c35541086606aa
Signed-off-by: Patrick Brady <pb071s@att.com>
Issue-ID: APPC-1018
Diffstat (limited to 'appc-config')
-rw-r--r-- | appc-config/appc-config-adaptor/provider/pom.xml | 12 | ||||
-rw-r--r-- | appc-config/appc-config-audit/provider/pom.xml | 11 | ||||
-rw-r--r-- | appc-config/appc-config-generator/provider/pom.xml | 12 | ||||
-rw-r--r-- | appc-config/appc-data-services/provider/pom.xml | 14 | ||||
-rw-r--r-- | appc-config/appc-encryption-tool/provider/pom.xml | 11 | ||||
-rw-r--r-- | appc-config/appc-flow-controller/provider/pom.xml | 14 |
6 files changed, 70 insertions, 4 deletions
diff --git a/appc-config/appc-config-adaptor/provider/pom.xml b/appc-config/appc-config-adaptor/provider/pom.xml index aa5e24f51..4fbf5a5e7 100644 --- a/appc-config/appc-config-adaptor/provider/pom.xml +++ b/appc-config/appc-config-adaptor/provider/pom.xml @@ -70,10 +70,20 @@ <artifactId>mockito-core</artifactId> <scope>test</scope> </dependency> - + <dependency> + <groupId>ch.qos.logback</groupId> + <artifactId>logback-classic</artifactId> + <version>${logback.version}</version> + </dependency> <dependency> <groupId>com.att.eelf</groupId> <artifactId>eelf-core</artifactId> + <exclusions> + <exclusion> + <groupId>ch.qos.logback</groupId> + <artifactId>logback-classic</artifactId> + </exclusion> + </exclusions> </dependency> <dependency> diff --git a/appc-config/appc-config-audit/provider/pom.xml b/appc-config/appc-config-audit/provider/pom.xml index 3babf6d6f..bb6629200 100644 --- a/appc-config/appc-config-audit/provider/pom.xml +++ b/appc-config/appc-config-audit/provider/pom.xml @@ -74,8 +74,19 @@ <artifactId>commons-io</artifactId> </dependency> <dependency> + <groupId>ch.qos.logback</groupId> + <artifactId>logback-classic</artifactId> + <version>${logback.version}</version> + </dependency> + <dependency> <groupId>com.att.eelf</groupId> <artifactId>eelf-core</artifactId> + <exclusions> + <exclusion> + <groupId>ch.qos.logback</groupId> + <artifactId>logback-classic</artifactId> + </exclusion> + </exclusions> </dependency> <dependency> <groupId>org.apache.commons</groupId> diff --git a/appc-config/appc-config-generator/provider/pom.xml b/appc-config/appc-config-generator/provider/pom.xml index 271873581..fd5eacdc1 100644 --- a/appc-config/appc-config-generator/provider/pom.xml +++ b/appc-config/appc-config-generator/provider/pom.xml @@ -94,10 +94,20 @@ <artifactId>commons-collections</artifactId> <version>3.2.2</version> </dependency> - + <dependency> + <groupId>ch.qos.logback</groupId> + <artifactId>logback-classic</artifactId> + <version>${logback.version}</version> + </dependency> <dependency> <groupId>com.att.eelf</groupId> <artifactId>eelf-core</artifactId> + <exclusions> + <exclusion> + <groupId>ch.qos.logback</groupId> + <artifactId>logback-classic</artifactId> + </exclusion> + </exclusions> </dependency> <dependency> diff --git a/appc-config/appc-data-services/provider/pom.xml b/appc-config/appc-data-services/provider/pom.xml index 92468db81..0b5676ea0 100644 --- a/appc-config/appc-data-services/provider/pom.xml +++ b/appc-config/appc-data-services/provider/pom.xml @@ -62,10 +62,21 @@ <groupId>commons-io</groupId> <artifactId>commons-io</artifactId> </dependency> + <dependency> + <groupId>ch.qos.logback</groupId> + <artifactId>logback-classic</artifactId> + <version>${logback.version}</version> + </dependency> <dependency> <groupId>com.att.eelf</groupId> <artifactId>eelf-core</artifactId> + <exclusions> + <exclusion> + <groupId>ch.qos.logback</groupId> + <artifactId>logback-classic</artifactId> + </exclusion> + </exclusions> </dependency> <dependency> @@ -138,7 +149,8 @@ <Bundle-SymbolicName>appc-config-data-services</Bundle-SymbolicName> <Bundle-Activator>org.onap.appc.data.services.AppcDataServiceActivator</Bundle-Activator> <Export-Package>org.onap.appc.data.services</Export-Package> - <Import-Package>*</Import-Package> + <Import-Package>groovy.lang;resolution:=optional, + org.codehaus.groovy.*;resolution:=optional,*</Import-Package> <Embed-Dependency>eelf-core,logback-core,logback-classic</Embed-Dependency> <DynamicImport-Package>*</DynamicImport-Package> </instructions> diff --git a/appc-config/appc-encryption-tool/provider/pom.xml b/appc-config/appc-encryption-tool/provider/pom.xml index 2866797ee..d9ffca478 100644 --- a/appc-config/appc-encryption-tool/provider/pom.xml +++ b/appc-config/appc-encryption-tool/provider/pom.xml @@ -66,8 +66,19 @@ <artifactId>commons-lang3</artifactId> </dependency> <dependency> + <groupId>ch.qos.logback</groupId> + <artifactId>logback-classic</artifactId> + <version>${logback.version}</version> + </dependency> + <dependency> <groupId>com.att.eelf</groupId> <artifactId>eelf-core</artifactId> + <exclusions> + <exclusion> + <groupId>ch.qos.logback</groupId> + <artifactId>logback-classic</artifactId> + </exclusion> + </exclusions> </dependency> <dependency> <groupId>commons-configuration</groupId> diff --git a/appc-config/appc-flow-controller/provider/pom.xml b/appc-config/appc-flow-controller/provider/pom.xml index f3cd09b89..065b3be22 100644 --- a/appc-config/appc-flow-controller/provider/pom.xml +++ b/appc-config/appc-flow-controller/provider/pom.xml @@ -69,8 +69,19 @@ <artifactId>jackson-dataformat-yaml</artifactId> </dependency> <dependency> + <groupId>ch.qos.logback</groupId> + <artifactId>logback-classic</artifactId> + <version>${logback.version}</version> + </dependency> + <dependency> <groupId>com.att.eelf</groupId> <artifactId>eelf-core</artifactId> + <exclusions> + <exclusion> + <groupId>ch.qos.logback</groupId> + <artifactId>logback-classic</artifactId> + </exclusion> + </exclusions> </dependency> <dependency> <groupId>org.onap.ccsdk.sli.adaptors</groupId> @@ -141,7 +152,8 @@ <Bundle-SymbolicName>org.onap.appc.flow.controller</Bundle-SymbolicName> <Bundle-Activator>org.onap.appc.flow.controller.FlowControllerActivator</Bundle-Activator> <Export-Package>org.onap.appc.flow.controller</Export-Package> - <Import-Package>*</Import-Package> + <Import-Package>groovy.lang;resolution:=optional, + org.codehaus.groovy.*;resolution:=optional,*</Import-Package> <Embed-Dependency>eelf-core,logback-core,logback-classic</Embed-Dependency> <DynamicImport-Package>*</DynamicImport-Package> </instructions> |