Skip to content

Commit fcb6cd8

Browse files
authored
[RORDEV-1528] CVE-2024-29857 (#1137)
1 parent f16a3ea commit fcb6cd8

File tree

22 files changed

+154
-89
lines changed

22 files changed

+154
-89
lines changed

core/build.gradle

Lines changed: 2 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -105,14 +105,8 @@ dependencies {
105105
api group: 'org.typelevel', name: 'squants_3', version: '1.8.3'
106106
api group: 'com.unboundid', name: 'unboundid-ldapsdk', version: '6.0.11'
107107
api group: 'com.lihaoyi', name: 'upickle_3', version: '4.0.2'
108-
// https://www.bouncycastle.org/latest_releases.html#1.0.2.4-NONCERT
109-
api group: 'org.bouncycastle', name: 'bc-noncert', version: '1.0.2.4'
110-
api(group: 'org.bouncycastle', name: 'bctls-fips', version: '1.0.19') {
111-
exclude group: 'org.bouncycastle', module: 'bc-fips'
112-
}
113-
api(group: 'org.bouncycastle', name: 'bcpkix-fips', version: '1.0.7') {
114-
exclude group: 'org.bouncycastle', module: 'bc-fips'
115-
}
108+
api group: 'org.bouncycastle', name: 'bctls-fips', version: '2.1.20'
109+
api group: 'org.bouncycastle', name: 'bcpkix-fips', version: '2.1.9'
116110

117111
testImplementation project(':tests-utils')
118112
testImplementation group: 'org.apache.logging.log4j', name: 'log4j-core', version: '2.24.2'

es67x/plugin-metadata/plugin-security.policy

Lines changed: 1 addition & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -12,10 +12,7 @@ grant {
1212
permission java.security.SecurityPermission "insertProvider";
1313
permission java.security.SecurityPermission "insertProvider.BCFIPS";
1414
permission java.security.SecurityPermission "insertProvider.BCJSSE";
15-
permission java.security.SecurityPermission "getProperty.keystore.type.compat";
16-
permission java.security.SecurityPermission "getProperty.jdk.certpath.disabledAlgorithms";
17-
permission java.security.SecurityPermission "getProperty.jdk.tls.disabledAlgorithms";
18-
permission java.security.SecurityPermission "getProperty.jdk.tls.server.defaultDHEParameters";
15+
permission java.security.SecurityPermission "getProperty.*";
1916
permission java.security.SecurityPermission "putProviderProperty.BCFIPS";
2017
permission java.security.SecurityPermission "putProviderProperty.BCJSSE";
2118
permission java.security.SecurityPermission "removeProvider.SunJSSE";

es70x/plugin-metadata/plugin-security.policy

Lines changed: 1 addition & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -12,10 +12,7 @@ grant {
1212
permission java.security.SecurityPermission "insertProvider";
1313
permission java.security.SecurityPermission "insertProvider.BCFIPS";
1414
permission java.security.SecurityPermission "insertProvider.BCJSSE";
15-
permission java.security.SecurityPermission "getProperty.keystore.type.compat";
16-
permission java.security.SecurityPermission "getProperty.jdk.certpath.disabledAlgorithms";
17-
permission java.security.SecurityPermission "getProperty.jdk.tls.disabledAlgorithms";
18-
permission java.security.SecurityPermission "getProperty.jdk.tls.server.defaultDHEParameters";
15+
permission java.security.SecurityPermission "getProperty.*";
1916
permission java.security.SecurityPermission "putProviderProperty.BCFIPS";
2017
permission java.security.SecurityPermission "putProviderProperty.BCJSSE";
2118
permission java.security.SecurityPermission "removeProvider.SunJSSE";

es710x/plugin-metadata/plugin-security.policy

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -8,6 +8,7 @@ grant {
88
permission java.lang.RuntimePermission "setContextClassLoader";
99
permission java.net.SocketPermission "*", "accept, resolve, connect";
1010
permission java.security.SecurityPermission "insertProvider";
11+
permission java.security.SecurityPermission "getProperty.*";
1112
permission java.security.SecurityPermission "putProviderProperty.BCFIPS";
1213
permission java.security.SecurityPermission "putProviderProperty.BCJSSE";
1314
};

es72x/plugin-metadata/plugin-security.policy

Lines changed: 1 addition & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -12,10 +12,7 @@ grant {
1212
permission java.security.SecurityPermission "insertProvider";
1313
permission java.security.SecurityPermission "insertProvider.BCFIPS";
1414
permission java.security.SecurityPermission "insertProvider.BCJSSE";
15-
permission java.security.SecurityPermission "getProperty.keystore.type.compat";
16-
permission java.security.SecurityPermission "getProperty.jdk.certpath.disabledAlgorithms";
17-
permission java.security.SecurityPermission "getProperty.jdk.tls.disabledAlgorithms";
18-
permission java.security.SecurityPermission "getProperty.jdk.tls.server.defaultDHEParameters";
15+
permission java.security.SecurityPermission "getProperty.*";
1916
permission java.security.SecurityPermission "putProviderProperty.BCFIPS";
2017
permission java.security.SecurityPermission "putProviderProperty.BCJSSE";
2118
permission java.security.SecurityPermission "removeProvider.SunJSSE";

es73x/plugin-metadata/plugin-security.policy

Lines changed: 1 addition & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -12,10 +12,7 @@ grant {
1212
permission java.security.SecurityPermission "insertProvider";
1313
permission java.security.SecurityPermission "insertProvider.BCFIPS";
1414
permission java.security.SecurityPermission "insertProvider.BCJSSE";
15-
permission java.security.SecurityPermission "getProperty.keystore.type.compat";
16-
permission java.security.SecurityPermission "getProperty.jdk.certpath.disabledAlgorithms";
17-
permission java.security.SecurityPermission "getProperty.jdk.tls.disabledAlgorithms";
18-
permission java.security.SecurityPermission "getProperty.jdk.tls.server.defaultDHEParameters";
15+
permission java.security.SecurityPermission "getProperty.*";
1916
permission java.security.SecurityPermission "putProviderProperty.BCFIPS";
2017
permission java.security.SecurityPermission "putProviderProperty.BCJSSE";
2118
permission java.security.SecurityPermission "removeProvider.SunJSSE";

es74x/plugin-metadata/plugin-security.policy

Lines changed: 1 addition & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -12,10 +12,7 @@ grant {
1212
permission java.security.SecurityPermission "insertProvider";
1313
permission java.security.SecurityPermission "insertProvider.BCFIPS";
1414
permission java.security.SecurityPermission "insertProvider.BCJSSE";
15-
permission java.security.SecurityPermission "getProperty.keystore.type.compat";
16-
permission java.security.SecurityPermission "getProperty.jdk.certpath.disabledAlgorithms";
17-
permission java.security.SecurityPermission "getProperty.jdk.tls.disabledAlgorithms";
18-
permission java.security.SecurityPermission "getProperty.jdk.tls.server.defaultDHEParameters";
15+
permission java.security.SecurityPermission "getProperty.*";
1916
permission java.security.SecurityPermission "putProviderProperty.BCFIPS";
2017
permission java.security.SecurityPermission "putProviderProperty.BCJSSE";
2118
permission java.security.SecurityPermission "removeProvider.SunJSSE";

es77x/plugin-metadata/plugin-security.policy

Lines changed: 1 addition & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -12,10 +12,7 @@ grant {
1212
permission java.security.SecurityPermission "insertProvider";
1313
permission java.security.SecurityPermission "insertProvider.BCFIPS";
1414
permission java.security.SecurityPermission "insertProvider.BCJSSE";
15-
permission java.security.SecurityPermission "getProperty.keystore.type.compat";
16-
permission java.security.SecurityPermission "getProperty.jdk.certpath.disabledAlgorithms";
17-
permission java.security.SecurityPermission "getProperty.jdk.tls.disabledAlgorithms";
18-
permission java.security.SecurityPermission "getProperty.jdk.tls.server.defaultDHEParameters";
15+
permission java.security.SecurityPermission "getProperty.*";
1916
permission java.security.SecurityPermission "putProviderProperty.BCFIPS";
2017
permission java.security.SecurityPermission "putProviderProperty.BCJSSE";
2118
permission java.security.SecurityPermission "removeProvider.SunJSSE";

es78x/plugin-metadata/plugin-security.policy

Lines changed: 1 addition & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -12,10 +12,7 @@ grant {
1212
permission java.security.SecurityPermission "insertProvider";
1313
permission java.security.SecurityPermission "insertProvider.BCFIPS";
1414
permission java.security.SecurityPermission "insertProvider.BCJSSE";
15-
permission java.security.SecurityPermission "getProperty.keystore.type.compat";
16-
permission java.security.SecurityPermission "getProperty.jdk.certpath.disabledAlgorithms";
17-
permission java.security.SecurityPermission "getProperty.jdk.tls.disabledAlgorithms";
18-
permission java.security.SecurityPermission "getProperty.jdk.tls.server.defaultDHEParameters";
15+
permission java.security.SecurityPermission "getProperty.*";
1916
permission java.security.SecurityPermission "putProviderProperty.BCFIPS";
2017
permission java.security.SecurityPermission "putProviderProperty.BCJSSE";
2118
permission java.security.SecurityPermission "removeProvider.SunJSSE";

es79x/plugin-metadata/plugin-security.policy

Lines changed: 1 addition & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -12,10 +12,7 @@ grant {
1212
permission java.security.SecurityPermission "insertProvider";
1313
permission java.security.SecurityPermission "insertProvider.BCFIPS";
1414
permission java.security.SecurityPermission "insertProvider.BCJSSE";
15-
permission java.security.SecurityPermission "getProperty.keystore.type.compat";
16-
permission java.security.SecurityPermission "getProperty.jdk.certpath.disabledAlgorithms";
17-
permission java.security.SecurityPermission "getProperty.jdk.tls.disabledAlgorithms";
18-
permission java.security.SecurityPermission "getProperty.jdk.tls.server.defaultDHEParameters";
15+
permission java.security.SecurityPermission "getProperty.*";
1916
permission java.security.SecurityPermission "putProviderProperty.BCFIPS";
2017
permission java.security.SecurityPermission "putProviderProperty.BCJSSE";
2118
permission java.security.SecurityPermission "removeProvider.SunJSSE";

0 commit comments

Comments
 (0)