Harmony eDelivery Access v1.3.1 Release Notes
Changes in This Release
Summary
- Update the "com.opencsv:opencsv" 3rd party dependency to fix the Apache Commons Text (CVE-2022-42889) vulnerability.
This warning applies to all the Harmony Access Point installations that use a remote database server. The instructions for setting up a remote database with the Harmony Access Point are available here.
The local database server must be started before the Harmony Access Point version upgrade. If the local database server is not running during the version upgrade, the installer fails and some configuration files are lost. After the version upgrade, the local database server can be stopped.
It's strongly advised to take a full backup of the Harmony Access Point host before running the version upgrade.
Completed Issues
Issue ID | Type | Summary |
---|---|---|
NEDS-98 | Fix | Update the "com.opencsv:opencsv" 3rd party dependency to fix the Apache Commons Text (CVE-2022-42889) vulnerability. |
Issue types: fix (bug fix or technical debt), improvement (improvement to an existing feature), new (a new feature).
New/Updated Dependencies
Dependency | Old Version | New Version | Notes |
---|---|---|---|
com.opencsv:opencsv | 5.0 | 5.7.1 | New version includes a fix to CVE-2022-42889. |
Contributors
The following developers have contributed to the development of this release version. A contribution means at least one Git commit that is included in the release.
GitHub Username |
---|
petkivim |
Other Notes
-
Package Repositories
Repository | URL |
---|---|
Focal | deb https://artifactory.niis.org/artifactory/harmony-release-deb focal-current main |
Repository Sign Key Details
Download URL | https://artifactory.niis.org/api/gpg/key/public |
---|---|
Hash | 935CC5E7FA5397B171749F80D6E3973B |
Fingerprint | A01B FE41 B9D8 EAF4 872F A3F1 FB0D 532C 10F6 EC5B |
3rd party key server | Ubuntu key server |
Packages
Focal
Package | SHA256 checksum |
---|---|
harmony-ap_1.3.1-0.ubuntu20.04_all.deb | b803459e7d15e773bebe4ee25bde112c2775281c3e17a047bcbbdbd2979e5f59 |
harmony-smp_1.3.1-0.ubuntu20.04_all.deb | 54d5de67e3592c96ab5e93ed8e305d207d49889e81c52b5f34c84516b3b488d6 |