Cumulative hotfix CDP PvC Base (Cumulative hotfix20)

Know more about the cumulative hotfix 20 for 7.1.8. This cumulative hotfix was released on March 04, 2024.

Following are the list of fixes that were shipped for CDP Private Cloud Base version 7.1.8-1.cdh7.1.8.p57.50607267

  • KT-7523: Keytrustee is using non-centralized jackson version
  • KT-7522: CLONE - Keytrustee HSM - Upgrade guava to the centralized CDPD version
  • CDPD-66844: [7.1.8 CHF20 CLONE] - Provide an option to bypass evaluation of chained plugin if the parent plugin has applicable policy
  • CDPD-66732: Backport ZOOKEEPER-4236 to 7.1.8 CHF20
  • CDPD-66730: Phoenix-thirdparty - Upgrade Guava to 32.0.1 due to CVE-2023-2976
  • CDPD-66630: spark build failure sles12
  • CDPD-66603: Backport HIVE-26961 to CDH-7.1.8.x
  • CDPD-66432: HBase-Solr - Upgrade snakeyaml due to CVE-2022-1471
  • CDPD-66407: [7.1.7 SP3] Zeppelin is using non-centralized jackson version
  • CDPD-66289: CLONE - 7.1.8x and 7.1.9.x CHF- Keytrustee-keyhsm - Upgrade Jetty to 9.4.53/10.0.17/11.0.17 due to CVE-2023-40167, CVE-2023-36479, CVE-2023-41900, CVE-2023-36478 and CVE-2023-44487
  • CDPD-66278: Backport HIVE-24404 to CDH-7.1.8.x
  • CDPD-66092: Fix Ranger Javapatch failure even if service-defs do not exist in ranger DB
  • CDPD-65911: Kafka password is in clear text in backport
  • CDPD-65239: Add missing libs in external_versions and centralize the same in zeppelin
  • CDPD-64235: CDPD - Upgrade Apache Derby to due to CVE-2022-46337
  • CDPD-60830: HBase-Thirdpary - Upgrade Guava to 32.0.1 due to CVE-2023-2976
  • CDPD-58580: CDPD - Upgrade Guava to 32.0.1 due to CVE-2023-2976
  • CDPD-53885: Backport HIVE-23444 to CDP-PvC SPx CHF
  • CDPD-43612: Hue - Upgrade sanitize-html to 2.7.1 due to medium CVEs
  • CDPD-41667: The Empty feature fails to clear trash and throws an error
  • CDPD-29207: Build phoenix-connectors using without.tephra option
  • CDPD-13292: externalize more common dependencies from Search, Solr, and Hbase-Indexer
Table 1. Cloudera Runtime (Cumulative Hotfix 20) download URL:
Parcel Repository Location