[Backport 2.x] Update build.gradle and build.sh to separate x64 linux nmslib build with different gcc versions #2508
Security Report
1 new vulnerabilities were introduced in this branch.
❌ New vulnerabilities:
CVE | Severity | Vulnerable Library | Suggested Fix | Issue | |
---|---|---|---|---|---|
CVE-2024-57699Path to dependency file: /qa/build.gradle Path to vulnerable library: /tmp/containerbase/cache/.gradle/caches/modules-2/files-2.1/net.minidev/json-smart/2.5.0/57a64f421b472849c40e77d2e7cce3a141b41e99/json-smart-2.5.0.jar,/tmp/containerbase/cache/.gradle/caches/modules-2/files-2.1/net.minidev/json-smart/2.5.0/57a64f421b472849c40e77d2e7cce3a141b41e99/json-smart-2.5.0.jar,/tmp/containerbase/cache/.gradle/caches/modules-2/files-2.1/net.minidev/json-smart/2.5.0/57a64f421b472849c40e77d2e7cce3a141b41e99/json-smart-2.5.0.jar,/tmp/containerbase/cache/.gradle/caches/modules-2/files-2.1/net.minidev/json-smart/2.5.0/57a64f421b472849c40e77d2e7cce3a141b41e99/json-smart-2.5.0.jar Dependency Hierarchy: -> opensearch-knn-2.19.0.0-SNAPSHOT (Root Library) -> json-path-2.9.0.jar -> ❌ json-smart-2.5.0.jar (Vulnerable Library) |
7.5 | json-smart-2.5.0.jar | None |
Base branch total remaining vulnerabilities: 0
Base branch commit: aa3551bc367a7c8c338af947b4587e93f849e0c8
Total libraries scanned: 131
Scan token: 012301d8b90f481a84a45dcfb1f0ccea