Skip to content

[fix][sec] Upgrade zstd-jni to 1.5.7-20 - #26766

Merged
merlimat merged 1 commit into
apache:masterfrom
lhotari:lh-fix-zstd-jni-1.5.7-20
Sep 29, 2026
Merged

merlimat merged 1 commit into
apache:masterfrom
lhotari:lh-fix-zstd-jni-1.5.7-20

Conversation

@lhotari

@lhotari lhotari commented Sep 29, 2026

Copy link
Copy Markdown
Member

Motivation

Update zstd-jni beyond 1.5.7-15 to include upstream maintenance fixes. Pulsar directly uses this dependency in compression interoperability tests; its production ZSTD codec uses Airlift.

Modifications

Upgrade zstd-jni from 1.5.7-15 to 1.5.7-20. The new release is a multi-release jar: Java 17/21 retain JNI implementations, while Java 22+ can select the FFM implementations provided by the library.

Verifying this change

  • Make sure that the change passes the CI checks.

help assemble sanityCheck checkBinaryLicense passed with configuration cache enabled, including Checkstyle/Spotless. All 51 cases in CompressorCodecBackwardCompatTest and CompressorCodecTest passed on both Java 17 and Java 25 with retries disabled and no skips. These cover Pulsar's codec interoperability; they are not exhaustive coverage of the library's new FFM APIs.

Does this pull request potentially affect one of the following parts:

  • Dependencies (add or upgrade a dependency)
  • The public API
  • The schema
  • The default values of configurations
  • The threading model
  • The binary protocol
  • The REST endpoints
  • The admin CLI options
  • The metrics
  • Anything that affects deployment

@merlimat
merlimat merged commit 0b946c9 into apache:master Sep 29, 2026
43 checks passed
@lhotari lhotari added this to the 5.0.0 milestone Oct 1, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants