Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump version of spark to 3.4.1 #206

Closed
wants to merge 1 commit into from
Closed

Bump version of spark to 3.4.1 #206

wants to merge 1 commit into from

Conversation

devongleeson
Copy link
Contributor

There is a recent CVE against spark 3.3.x line, CVE-2023-22946, where the suggested mitigation is upgrading to the 3.4.x line.

There is a recent CVE against spark 3.3.x line, CVE-2023-22946, where the
suggested mitigation is upgrading to the 3.4.x line.
@devongleeson
Copy link
Contributor Author

Would it make sense to include 3.4.0 as well?

@Jolanrensen
Copy link
Collaborator

Unfortunately, that won't work as expected, as explained in this issue: #195.
A simple version bump will most likely cause many unexpected bugs since our hacky implementation (the core scala module of the project) has deviated too much from the original Spark one. Supporting 3.4+ would require a major overhaul.

@devongleeson
Copy link
Contributor Author

Ah, that's too bad.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants