From 76b6ff1ce84d4c2ab4518dd5f154083b91680245 Mon Sep 17 00:00:00 2001 From: Taka Cho Date: Sat, 18 Aug 2018 15:56:57 -0400 Subject: resolving logback-classic 1.13 from security issue cdp-pal and eelf are the jar using logback-classic 1.1.3. need to use exclusions option in pom file Issue-ID: APPC-1018 Change-Id: I00b41f9c366a5ead3f4205cd6fa6b9eb74599767 Signed-off-by: Taka Cho --- .../appc-chef-adapter-bundle/pom.xml | 14 +++++++++++++- .../appc-iaas-adapter-bundle/pom.xml | 20 ++++++++++++++++++++ .../appc-netconf-adapter-bundle/pom.xml | 12 ++++++++++++ .../appc-rest-adapter-bundle/pom.xml | 12 ++++++++++++ .../appc-rest-healthcheck-adapter-bundle/pom.xml | 12 ++++++++++++ .../appc-ssh-adapter/appc-ssh-adapter-sshd/pom.xml | 11 +++++++++++ appc-config/appc-config-adaptor/provider/pom.xml | 12 +++++++++++- appc-config/appc-config-audit/provider/pom.xml | 11 +++++++++++ appc-config/appc-config-generator/provider/pom.xml | 12 +++++++++++- appc-config/appc-data-services/provider/pom.xml | 11 +++++++++++ appc-config/appc-encryption-tool/provider/pom.xml | 11 +++++++++++ appc-config/appc-flow-controller/provider/pom.xml | 11 +++++++++++ appc-core/appc-common-bundle/pom.xml | 13 ++++++++++++- .../appc-event-listener-bundle/pom.xml | 14 +++++++++++++- appc-inbound/appc-design-services/provider/pom.xml | 12 +++++++++++- appc-inbound/appc-interfaces-service/bundle/pom.xml | 12 +++++++++++- .../appc-lifecycle-management-core/pom.xml | 11 +++++++++++ appc-outbound/appc-aai-client/provider/pom.xml | 14 ++++++++++++-- .../appc-network-inventory-client/provider/pom.xml | 11 +++++++++++ pom.xml | 2 +- 20 files changed, 228 insertions(+), 10 deletions(-) diff --git a/appc-adapters/appc-chef-adapter/appc-chef-adapter-bundle/pom.xml b/appc-adapters/appc-chef-adapter/appc-chef-adapter-bundle/pom.xml index bc9846674..41b3de6e7 100644 --- a/appc-adapters/appc-chef-adapter/appc-chef-adapter-bundle/pom.xml +++ b/appc-adapters/appc-chef-adapter/appc-chef-adapter-bundle/pom.xml @@ -93,8 +93,14 @@ com.att.cdp cdp-pal-common - compile ${cdp.pal.version} + compile + + + ch.qos.logback + logback-classic + + @@ -102,6 +108,12 @@ cdp-pal-openstack compile ${cdp.pal.version} + + + com.att.cdp + cdp-pal-common + + diff --git a/appc-adapters/appc-iaas-adapter/appc-iaas-adapter-bundle/pom.xml b/appc-adapters/appc-iaas-adapter/appc-iaas-adapter-bundle/pom.xml index 331773fc6..91cdd2663 100644 --- a/appc-adapters/appc-iaas-adapter/appc-iaas-adapter-bundle/pom.xml +++ b/appc-adapters/appc-iaas-adapter/appc-iaas-adapter-bundle/pom.xml @@ -48,11 +48,31 @@ + + + com.att.cdp + cdp-pal-common + compile + ${cdp.pal.version} + + + ch.qos.logback + logback-classic + + + + com.att.cdp cdp-pal-openstack compile ${cdp.pal.version} + + + com.att.cdp + cdp-pal-common + + diff --git a/appc-adapters/appc-netconf-adapter/appc-netconf-adapter-bundle/pom.xml b/appc-adapters/appc-netconf-adapter/appc-netconf-adapter-bundle/pom.xml index f87d7d139..a61659cb6 100644 --- a/appc-adapters/appc-netconf-adapter/appc-netconf-adapter-bundle/pom.xml +++ b/appc-adapters/appc-netconf-adapter/appc-netconf-adapter-bundle/pom.xml @@ -57,6 +57,12 @@ cdp-pal-common compile ${cdp.pal.version} + + + ch.qos.logback + logback-classic + + @@ -64,6 +70,12 @@ cdp-pal-openstack compile ${cdp.pal.version} + + + com.att.cdp + cdp-pal-common + + diff --git a/appc-adapters/appc-rest-adapter/appc-rest-adapter-bundle/pom.xml b/appc-adapters/appc-rest-adapter/appc-rest-adapter-bundle/pom.xml index b67b3bd5c..8c666b669 100644 --- a/appc-adapters/appc-rest-adapter/appc-rest-adapter-bundle/pom.xml +++ b/appc-adapters/appc-rest-adapter/appc-rest-adapter-bundle/pom.xml @@ -66,6 +66,12 @@ cdp-pal-common compile ${cdp.pal.version} + + + ch.qos.logback + logback-classic + + @@ -73,6 +79,12 @@ cdp-pal-openstack compile ${cdp.pal.version} + + + com.att.cdp + cdp-pal-common + + diff --git a/appc-adapters/appc-rest-healthcheck-adapter/appc-rest-healthcheck-adapter-bundle/pom.xml b/appc-adapters/appc-rest-healthcheck-adapter/appc-rest-healthcheck-adapter-bundle/pom.xml index 8361f466b..054f7fbf6 100644 --- a/appc-adapters/appc-rest-healthcheck-adapter/appc-rest-healthcheck-adapter-bundle/pom.xml +++ b/appc-adapters/appc-rest-healthcheck-adapter/appc-rest-healthcheck-adapter-bundle/pom.xml @@ -72,12 +72,24 @@ com.att.cdp cdp-pal-common compile + + + ch.qos.logback + logback-classic + + com.att.cdp cdp-pal-openstack compile + + + com.att.cdp + cdp-pal-common + + diff --git a/appc-adapters/appc-ssh-adapter/appc-ssh-adapter-sshd/pom.xml b/appc-adapters/appc-ssh-adapter/appc-ssh-adapter-sshd/pom.xml index 4d00b5763..c65856655 100644 --- a/appc-adapters/appc-ssh-adapter/appc-ssh-adapter-sshd/pom.xml +++ b/appc-adapters/appc-ssh-adapter/appc-ssh-adapter-sshd/pom.xml @@ -58,9 +58,20 @@ provided 2.0.0 + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + junit diff --git a/appc-config/appc-config-adaptor/provider/pom.xml b/appc-config/appc-config-adaptor/provider/pom.xml index a5c90e48a..859b24a30 100644 --- a/appc-config/appc-config-adaptor/provider/pom.xml +++ b/appc-config/appc-config-adaptor/provider/pom.xml @@ -70,10 +70,20 @@ mockito-core test - + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + diff --git a/appc-config/appc-config-audit/provider/pom.xml b/appc-config/appc-config-audit/provider/pom.xml index 59baa05fe..e9c6b9016 100644 --- a/appc-config/appc-config-audit/provider/pom.xml +++ b/appc-config/appc-config-audit/provider/pom.xml @@ -73,9 +73,20 @@ commons-io commons-io + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + org.apache.commons diff --git a/appc-config/appc-config-generator/provider/pom.xml b/appc-config/appc-config-generator/provider/pom.xml index 271873581..fd5eacdc1 100644 --- a/appc-config/appc-config-generator/provider/pom.xml +++ b/appc-config/appc-config-generator/provider/pom.xml @@ -94,10 +94,20 @@ commons-collections 3.2.2 - + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + diff --git a/appc-config/appc-data-services/provider/pom.xml b/appc-config/appc-data-services/provider/pom.xml index 92468db81..b38313326 100644 --- a/appc-config/appc-data-services/provider/pom.xml +++ b/appc-config/appc-data-services/provider/pom.xml @@ -62,10 +62,21 @@ commons-io commons-io + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + diff --git a/appc-config/appc-encryption-tool/provider/pom.xml b/appc-config/appc-encryption-tool/provider/pom.xml index 1959093a0..3ce00bee2 100644 --- a/appc-config/appc-encryption-tool/provider/pom.xml +++ b/appc-config/appc-encryption-tool/provider/pom.xml @@ -65,9 +65,20 @@ org.apache.commons commons-lang3 + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + commons-configuration diff --git a/appc-config/appc-flow-controller/provider/pom.xml b/appc-config/appc-flow-controller/provider/pom.xml index f3cd09b89..4a6da1f79 100644 --- a/appc-config/appc-flow-controller/provider/pom.xml +++ b/appc-config/appc-flow-controller/provider/pom.xml @@ -68,9 +68,20 @@ com.fasterxml.jackson.dataformat jackson-dataformat-yaml + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + org.onap.ccsdk.sli.adaptors diff --git a/appc-core/appc-common-bundle/pom.xml b/appc-core/appc-common-bundle/pom.xml index 0f72a1620..07300f53f 100644 --- a/appc-core/appc-common-bundle/pom.xml +++ b/appc-core/appc-common-bundle/pom.xml @@ -30,9 +30,20 @@ + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + org.slf4j @@ -157,4 +168,4 @@ - \ No newline at end of file + diff --git a/appc-event-listener/appc-event-listener-bundle/pom.xml b/appc-event-listener/appc-event-listener-bundle/pom.xml index 929d7cfa8..1cec77bbe 100644 --- a/appc-event-listener/appc-event-listener-bundle/pom.xml +++ b/appc-event-listener/appc-event-listener-bundle/pom.xml @@ -41,10 +41,21 @@ ${project.version} --> + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core - + + + ch.qos.logback + logback-classic + + + org.onap.appc appc-common @@ -119,6 +130,7 @@ org.mockito mockito-core + test diff --git a/appc-inbound/appc-design-services/provider/pom.xml b/appc-inbound/appc-design-services/provider/pom.xml index 7197c0633..2adfd30f2 100755 --- a/appc-inbound/appc-design-services/provider/pom.xml +++ b/appc-inbound/appc-design-services/provider/pom.xml @@ -114,10 +114,20 @@ sal-binding-broker-impl test - + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + org.onap.ccsdk.sli.adaptors diff --git a/appc-inbound/appc-interfaces-service/bundle/pom.xml b/appc-inbound/appc-interfaces-service/bundle/pom.xml index f9d21e13e..403595f86 100644 --- a/appc-inbound/appc-interfaces-service/bundle/pom.xml +++ b/appc-inbound/appc-interfaces-service/bundle/pom.xml @@ -110,10 +110,20 @@ sal-binding-broker-impl test - + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + com.sun.jersey diff --git a/appc-lifecycle-management/appc-lifecycle-management-core/pom.xml b/appc-lifecycle-management/appc-lifecycle-management-core/pom.xml index c76269293..e9bf49ae3 100644 --- a/appc-lifecycle-management/appc-lifecycle-management-core/pom.xml +++ b/appc-lifecycle-management/appc-lifecycle-management-core/pom.xml @@ -70,9 +70,20 @@ state-machine-lib ${project.version} + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + diff --git a/appc-outbound/appc-aai-client/provider/pom.xml b/appc-outbound/appc-aai-client/provider/pom.xml index 836e298ea..16645dc8d 100755 --- a/appc-outbound/appc-aai-client/provider/pom.xml +++ b/appc-outbound/appc-aai-client/provider/pom.xml @@ -60,14 +60,24 @@ commons-io 2.5 - + org.apache.commons commons-lang3 - + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + diff --git a/appc-outbound/appc-network-inventory-client/provider/pom.xml b/appc-outbound/appc-network-inventory-client/provider/pom.xml index e2edfbac2..b91cbe6d7 100755 --- a/appc-outbound/appc-network-inventory-client/provider/pom.xml +++ b/appc-outbound/appc-network-inventory-client/provider/pom.xml @@ -48,9 +48,20 @@ commons-io commons-io + + ch.qos.logback + logback-classic + ${logback.version} + com.att.eelf eelf-core + + + ch.qos.logback + logback-classic + + com.sun.jersey diff --git a/pom.xml b/pom.xml index ee2185d99..74b0b4b2d 100644 --- a/pom.xml +++ b/pom.xml @@ -377,7 +377,7 @@ limitations under the License. ch.qos.logback logback-core - ${logback.version} + ${logback.version} compile -- cgit 1.2.3-korg