Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Appearance settings

Commit cbcf4f3

Browse filesBrowse files
Add a Kotlin dependency to work around CVE-2022-24329 (#7660)
* Bump okio to 3.3.0 * Avoid bad kotlin stdlib versions * Update okhttp/build.gradle Co-authored-by: Jesse Wilson <jwilson@squareup.com>
1 parent 8eddd1d commit cbcf4f3
Copy full SHA for cbcf4f3

File tree

2 files changed

+4
-0
lines changed
Filter options

2 files changed

+4
-0
lines changed

‎build.gradle

Copy file name to clipboardExpand all lines: build.gradle
+1Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -40,6 +40,7 @@ buildscript {
4040
'jsr305': "com.google.code.findbugs:jsr305:${versions.findbugs}",
4141
'junit': "junit:junit:${versions.junit}",
4242
'kotlinStdlib': "org.jetbrains.kotlin:kotlin-stdlib:${versions.kotlin}",
43+
'kotlinStdlibJdk8': "org.jetbrains.kotlin:kotlin-stdlib-jdk8:${versions.kotlin}",
4344
'moshi': "com.squareup.moshi:moshi:${versions.moshi}",
4445
'moshiKotlin': "com.squareup.moshi:moshi-kotlin-codegen:${versions.moshi}",
4546
'okio': "com.squareup.okio:okio:${versions.okio}",

‎okhttp/build.gradle

Copy file name to clipboardExpand all lines: okhttp/build.gradle
+3Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -24,6 +24,9 @@ task copyJavaTemplates(type: Copy) {
2424
dependencies {
2525
api deps.okio
2626
api deps.kotlinStdlib
27+
// Only imported to avoid broken vulnerability scanners for CVE-2022-24329
28+
// https://github.com/square/okhttp/issues/7654
29+
api deps.kotlinStdlibJdk8
2730
compileOnly deps.android
2831
compileOnly deps.bouncycastle
2932
compileOnly deps.bouncycastletls

0 commit comments

Comments
0 (0)
Morty Proxy This is a proxified and sanitized view of the page, visit original site.