blob: 5a4ae9f4117aa17624a40432344409517f030ebb [file] [log] [blame]
---
layout: post
title: 'The Apache Weekly News Round-up: week ending 18 March 2022'
date: '2022-03-21T15:20:04+00:00'
categories: foundation
---
<p></p><p></p><p><span style="font-size:14px;">Happy Friday! Let's take a look at what the Apache community has been up to over the past week:</span></p><p></p><span style="font-weight: 700;">ASF Board</span>&nbsp;– management and oversight of the business affairs of the corporation in accordance with the Foundation's bylaws.<br>&nbsp;- Next Board Meeting: 20 April 2022. Running <a href="https://apache.org/foundation/board/calendar.html" target="_blank">Board calendar and minutes</a> are available.<p></p><p><span style="font-weight: 700;">ASF Infrastructure</span>&nbsp;– our distributed team on three continents keeps the ASF's infrastructure running around the clock.<br>&nbsp;- 7M+ weekly checks yield uptime at 100.00%. Performance checks across 50 different service components spread over more than 250 machines in data centers around the world. View the&nbsp;<a href="http://www.apache.org/uptime/" target="_blank">ASF's Infrastructure Uptime site to see the most recent averages</a>.<br></p><p><span style="font-weight: 700;">Apache Code Snapshot&nbsp;</span>– Over the past week, 328 Apache Committers changed 10,109,144 lines of code over 3,415 commits. Top 5 contributors, in order, are: Mark Thomas, Chesnay Schepler, Gary Gregory, Jean-Baptiste Onofré, and Claus Ibsen.&nbsp; &nbsp; &nbsp; <br></p><p><span style="font-weight: 700;"></span></p><p><span style="font-weight: 700;">Apache Project Announcements</span>&nbsp;– the latest updates by category.</p><p>Big Data --<br>&nbsp;- <a href="https://beam.apache.org/" target="_blank">Apache </a><span class="il"><a href="https://beam.apache.org/" target="_blank">Beam</a></span> 2.37.0 released</p><p></p><p>Content --<br>&nbsp;- <a href="http://jackrabbit.apache.org/" target="_blank">Apache </a><span class="il"><a href="http://jackrabbit.apache.org/" target="_blank">Jackrabbit</a></span> <span class="il">Oak</span> 1.6.23 released&nbsp;</p><p></p><p>Cloud Computing -- <br>&nbsp;- <a href="https://kafka.apache.org/" target="_blank">Apache </a><span class="il"><a href="https://kafka.apache.org/" target="_blank">Kafka</a></span> 3.0.1 released&nbsp; <br>&nbsp;- <a href="http://libcloud.apache.org/" target="_blank">Apache </a><span class="il"><a href="http://libcloud.apache.org/" target="_blank">Libcloud</a></span> 3.5.0 released&nbsp; <br>&nbsp;- <a href="https://s.apache.org/lvwgi" target="_blank">CVE-2022-26779</a>: Apache Cloudstack: insecure random number generation affects project email invitation&nbsp;
</p><p>Database --<br>&nbsp;- <a href="http://geode.apache.org/" target="_blank">Apache </a><span class="il"><a href="http://geode.apache.org/" target="_blank">Geode</a></span> 1.13.8 released&nbsp;</p>Integration --<br>&nbsp;- <a href="https://camel.apache.org/" target="_blank">Apache </a><span class="il"><a href="https://camel.apache.org/" target="_blank">Camel</a></span> 3.11.6 (LTS) released&nbsp;<p></p><p>Libraries --<br>&nbsp;- <a href="https://commons.apache.org/proper/commons-daemon/" target="_blank">Apache </a><span class="il"><a href="https://commons.apache.org/proper/commons-daemon/" target="_blank">Commons</a></span><a href="https://commons.apache.org/proper/commons-daemon/" target="_blank"> </a><span class="il"><a href="https://commons.apache.org/proper/commons-daemon/" target="_blank">Daemon</a></span> 1.3.0 released&nbsp;</p><p>Messaging --<br>&nbsp;- <a href="https://activemq.apache.org/" target="_blank">Apache </a><span class="il"><a href="https://activemq.apache.org/" target="_blank">ActiveMQ</a></span> 5.17.0 released <br>&nbsp;- <a href="https://curator.apache.org/" target="_blank">Apache </a><span class="il"><a href="https://curator.apache.org/" target="_blank">Curator</a></span> 5.2.1 released <br></p><p>Observability --<br>&nbsp;- <a href="https://skywalking.apache.org/" target="_blank">Apache </a><span class="il"><a href="https://skywalking.apache.org/" target="_blank">SkyWalking</a></span> <span class="il">NodeJS</span> 0.4.0 released&nbsp;</p>Programming Languages --<br>&nbsp;- <a href="https://groovy.apache.org/" target="_blank">Apache </a><span class="il"><a href="https://groovy.apache.org/" target="_blank">Groovy</a></span> 4.0.1 released&nbsp;<p></p><p>Servers --<br>&nbsp;- <a href="https://httpd.apache.org/" target="_blank">Apache </a><span class="il"><a href="https://httpd.apache.org/" target="_blank">HTTP</a></span><a href="https://httpd.apache.org/" target="_blank"> </a><span class="il"><a href="https://httpd.apache.org/" target="_blank">Server</a></span> 2.4.53 released <br>&nbsp;&nbsp; -- <a href="https://s.apache.org/ar6og" target="_blank">CVE-2022-23943</a>: mod_sed: Read/write beyond bounds&nbsp; <br>&nbsp;&nbsp; -- <a href="https://s.apache.org/heii8" target="_blank">CVE-2022-22721</a>: Possible buffer overflow with very large or unlimited LimitXMLRequestBody <br>&nbsp;&nbsp; -- <a href="https://s.apache.org/p1lui" target="_blank">CVE-2022-22720</a>: HTTP request smuggling vulnerability in Apache HTTP Server 2.4.52 and earlier <br>&nbsp;&nbsp; -- <a href="https://s.apache.org/nkbz1" target="_blank">CVE-2022-22719</a>: mod_lua Use of uninitialized value of in r:parsebody <br>&nbsp;- <a href="http://tomcat.apache.org/" target="_blank">Apache </a><span class="il"><a href="http://tomcat.apache.org/" target="_blank">Tomcat</a></span> 8.5.77, 9.0.60, 10.0.18, 10.1.0-M12 (alpha) released <br>&nbsp;- <a href="https://trafficserver.apache.org/" target="_blank">Apache </a><span class="il"><a href="https://trafficserver.apache.org/" target="_blank">Traffic</a></span><a href="https://trafficserver.apache.org/" target="_blank"> </a><span class="il"><a href="https://trafficserver.apache.org/" target="_blank">Server</a></span> 9.1.2 released <br>&nbsp;-<a href="https://hc.apache.org/" target="_blank"> Apache </a><span class="il"><a href="https://hc.apache.org/" target="_blank">HttpComponents</a></span> <span class="il">Core</span> 5.2-beta1 released<br></p><p></p><div>Workflow --<br>&nbsp;- <a href="https://airflow.apache.org/docs/helm-chart" target="_blank">Apache </a><span class="il"><a href="https://airflow.apache.org/docs/helm-chart" target="_blank">Airflow</a></span><a href="https://airflow.apache.org/docs/helm-chart" target="_blank"> Helm Chart</a> 1.5.0 released&nbsp; <br></div><p></p><p></p><p></p><p></p><p></p><p></p><p><span style="font-weight: 700;"><br>Did You Know?</span><br></p><p>- Did you know that the <a href="https://druid.apache.org/" target="_blank">Apache Druid</a> community will be holding a hybrid meetup on 29 March?&nbsp;</p><p>- Did you know that the Bangor Australia's Bangor Brumbies Football Club site uses <a href="https://wicket.apache.org/" target="_blank">Apache Wicket</a>?&nbsp;</p><p>- Did you know that you can support the ASF through one-time and recurring
tax-deductible donations online using Apple Pay, Google Pay, and
Microsoft Pay using your mobile phone? <a target="_blank" class="c-link" data-stringify-link="https://donate.apache.org/" data-sk="tooltip_parent" href="https://donate.apache.org/" rel="noopener noreferrer">https://donate.apache.org/</a></p><h3 style="font-family: &quot;Helvetica Neue&quot;, Helvetica, Arial, sans-serif; color: rgb(0, 0, 0);">Apache Community Notices</h3><p>&nbsp;- Apache in 2021 -&nbsp;<a href="https://s.apache.org/Apache2021Digits" target="_blank">By The Digits</a>&nbsp;+&nbsp;<a href="https://youtu.be/GU0SV_2tWkU" target="_blank">Video highlights&nbsp;</a></p><p>&nbsp;- Watch "<a href="https://www.youtube.com/watch?v=JUt2nb0mgwg" target="_blank" style="background-color: rgb(255, 255, 255);">Trillions and Trillions Served</a>", the documentary on the ASF 1)&nbsp;<a href="https://www.youtube.com/watch?v=JUt2nb0mgwg" target="_blank" style="background-color: rgb(255, 255, 255);">full feature</a>&nbsp;[49 min] 2) "<a href="https://www.youtube.com/watch?v=nXtIti9jMFI" target="_blank" style="background-color: rgb(255, 255, 255);">Apache Everywhere</a>" [6 min] 3) "<a href="https://www.youtube.com/watch?v=YM5dLvNatRs" target="_blank" style="background-color: rgb(255, 255, 255);">Why Apache</a>" [2.5 min] 4)&nbsp;“<a href="https://www.youtube.com/watch?v=qkvqJaX4S50" target="_blank" style="background-color: rgb(255, 255, 255);">Apache Innovation</a>” [40 min]&nbsp;</p><p>&nbsp;- ASF Annual Report: FY2021 --&nbsp;<a href="https://blogs.apache.org/foundation/entry/the-apache-software-foundation-announces78" target="_blank">Press release</a>&nbsp;and&nbsp;<a href="https://www.apache.org/foundation/docs/FY2021AnnualReport.pdf" target="_blank">Report</a>&nbsp;(PDF)</p><p>&nbsp;- The Apache Way to&nbsp;<a href="https://s.apache.org/GhnI" target="_blank">Sustainable Open Source Success</a>&nbsp;</p><p>&nbsp;-&nbsp;<a href="http://www.apache.org/foundation/reports.html" target="_blank">Foundation Reports and Statements</a><br></p><p>&nbsp;- Presentations from 2021's ApacheCon Asia and ApacheCon@Home are available on the&nbsp;<a href="https://www.youtube.com/c/TheApacheFoundation/" target="_blank" style="background-color: rgb(255, 255, 255);">ASF YouTube channel</a>.</p><p>&nbsp;- "<a href="https://blogs.apache.org/foundation/category/SuccessAtApache" target="_blank">Success at Apache</a>" focuses on the people and processes behind why the ASF "just works."&nbsp;<br></p><div><p>&nbsp;- Follow the ASF on social media:&nbsp;<a href="https://twitter.com/TheASF" target="_blank" style="background-color: rgb(255, 255, 255);">@TheASF on Twitter</a>&nbsp;and&nbsp;<a href="https://www.linkedin.com/company/the-apache-software-foundation" target="_blank" style="background-color: rgb(255, 255, 255);">The ASF page LinkedIn</a>.&nbsp;<br></p></div><div><p>&nbsp;- Follow the&nbsp;<a href="https://www.facebook.com/ApacheSoftwareFoundation/" target="_blank">Apache Community on Facebook</a>&nbsp;and&nbsp;<a href="https://twitter.com/ApacheCommunity" target="_blank">Twitter</a>.&nbsp;</p></div><div>&nbsp;- Are your software solutions Powered by Apache?&nbsp;<a href="http://www.apache.org/foundation/press/kit/#poweredby" target="_blank">Download &amp; use our "Powered By" logos</a>.<br></div><p><span class="LrzXr"></span><span class="LrzXr"></span></p><div><hr><h2>Stay updated about The ASF</h2><p>For real-time updates, sign up for Apache-related news by sending mail to announce-subscribe@apache.org and follow @TheASF on Twitter. For a broader spectrum from the Apache community, <a href="https://twitter.com/PlanetApache" target="_blank">Planet Apache</a> provides an aggregate of Project activities as well as the personal blogs and tweets of select ASF Committers.</p></div><p></p><p></p>