Release Updates

Topic used to notify followers on all new releases!


16 people like this

GridGain 8.7.11 has been released.

You can find release notes here:
https://www.gridgain.com/docs/latest/release-notes/8.7.11/release-notes_8.7.11

Download links:
- Ultimate Edition: https://gridgain.com/media/gridgain-ultimate-8.7.11.zip
- Enterprise Edition: https://gridgain.com/media/gridgain-enterprise-8.7.11.zip
- Community Edition: https://gridgain.com/media/gridgain-community-8.7.11.zip

Regards,
GridGain Support Team

GridGain 2.5.15/8.5.15 has been released.

You can find release notes here:
https://www.gridgain.com/docs/latest/release-notes/8.5.15/release-notes_8.5.15

Download links:
- Ultimate Edition: https://gridgain.com/media/gridgain-ultimate-fabric-8.5.15.zip
- Enterprise Edition: https://gridgain.com/media/gridgain-enterprise-fabric-8.5.15.zip
- Community Edition: https://gridgain.com/media/gridgain-professional-fabric-2.5.15.zip

Regards,
GridGain Support Team
GridGain Web Console 2020.01.01 has been released.

You can find release notes here:
https://www.gridgain.com/docs/web-console/latest/release-notes/2020.01.01/release-notes_2020.01.01

Download link for Web Console Direct Install Zips and Docker Containers:
Regards,
GridGain Support Team
GridGain Web Console 2020.01.00 has been released.

You can find release notes here:
https://www.gridgain.com/docs/web-console/latest/release-notes/2020.01.00/release-notes_2020.01.00

Download link for Web Console Direct Install Zips and Docker Containers:
Regards,
GridGain Support Team

1 person likes this

Hi everyone,

We've released a new version 8.5.14 that will be the final one for 2019 for 8.5 line


Major updates:

  • Useful improvements for SQL index inline. Now GridGain will print warnings in case if inline size is not efficient
  • Fixes for Data Centre replication and  transaction processing logic

Release notes: https://www.gridgain.com/docs/8.5/release-notes/8.5.14/release-notes_8.5.14


If you are thinking about upgrade, please check previous releases. If you are using transactional caches, there is useful improvement delivered with 8.5.11 that allow you to track user time on transactions

Previous releases

https://www.gridgain.com/docs/8.5/release-notes/8.5.13/release-notes_8.5.13

https://www.gridgain.com/docs/8.5/release-notes/8.5.12/release-notes_8.5.12

https://www.gridgain.com/docs/8.5/release-notes/8.5.11/release-notes_8.5.11

https://www.gridgain.com/docs/8.5/release-notes/8.5.10/release-notes_8.5.10


Direct download links:

Professional: https://gridgain.com/media/gridgain-professional-fabric-2.5.14.zip 

Enterprise: https://gridgain.com/media/gridgain-enterprise-fabric-8.5.14.zip 

Ultimate: https://gridgain.com/media/gridgain-ultimate-fabric-8.5.14.zip 

Web console direct install that we are keeping for compatibility:


GridGain is recommending to use new WebConsole that is compatible with all supported GridGain versions

 https://www.gridgain.com/docs/web-console/latest/web-console-getting-started

Web console direct install:
GridGain Web Console on-premise-2019.12.02.zip

Gridgain Web Console Agent 2019.12.02.zip


Wishing you happy end of the year holidays.

Cheers,

GridGain Support Team

Good day everyone, 

Recent months GridGain development team was working on significant update for 8.7 release line and we are happy to announce that new release has been published today


Major deliverables:


More details:https://www.gridgain.com/media/release-notes_8.7.8.html


Direct download links:

Community: https://gridgain.com/media/gridgain-community-8.7.8.zip
Enterprise: https://gridgain.com/media/gridgain-enterprise-8.7.8.zip
Ultimate: https://gridgain.com/media/gridgain-ultimate-8.7.8.zip


Regards,

GridGain Support Team

Hi Everyone, GridGain has released version 8.5.9. We've been working on the version over 3 months to make its more stable

Major updates:

  • We found and fixed several possible persistence corruption that can be observed in specific conditions
  • Update on transaction processing that fixed an issue with primary/backup counters mismatch
  • Fixes for indexes that will prevent CorruptedTreeException
  • Set of external dependencies were updated

 

For more details you can check our release notes: https://www.gridgain.com/media/release-notes_8.5.9.html


Direct download links:

Ultimate Edition: https://gridgain.com/media/gridgain-ultimate-fabric-8.5.9.zip

Enterprise Edition: https://gridgain.com/media/gridgain-enterprise-fabric-8.5.9.zip

Professional Edition: https://gridgain.com/media/gridgain-professional-fabric-2.5.9.zip


Versions in Maven:

8.5.9 for gridgain-core artefact

2.5.9 for ignite-xxx artefacts


Regards,

GridGain Support Team

GridGain has released version 8.5.8.

 

You can find release notes by the following link:

https://www.gridgain.com/media/release-notes_8.5.8.html


Here are the direct download links:

Ultimate Edition: https://gridgain.com/media/gridgain-ultimate-fabric-8.5.8.zip

Enterprise Edition: https://gridgain.com/media/gridgain-enterprise-fabric-8.5.8.zip

Professional Edition: https://gridgain.com/media/gridgain-professional-fabric-2.5.8.zip


Versions in Maven:

8.5.8 for gridgain-core artifact

2.5.8 for ignite-xxx artifacts


Regards,

GridGain Support Team

GridGain has released version 8.7.5.

 

You can find release notes by the following link:

https://www.gridgain.com/media/release-notes_8.7.5.html


Here are the direct download links:

Ultimate Edition: https://gridgain.com/media/gridgain-ultimate-8.7.5.zip 

Enterprise Edition: https://gridgain.com/media/gridgain-enterprise-8.7.5.zip

Community Edition: https://gridgain.com/media/gridgain-community-8.7.5.zip


Versions in Maven:

8.7.5 for gridgain-core artifact

8.7.5 for ignite-xxx artifacts


Please note, ignite-xxx aritacts have a new group id: org.gridgain


Regards,

GridGain Support Team

GridGain has released version 8.4.9.

 

The following main changes are included in this version:

  • DR: Fixed wrong DR entry version usage for removed entry.
  • DR: Dynamic caches support.
  • Visor GUI: Added functionality to preview and reset cache lost partitions.
  • Visor GUI: Added "Consistent ID" column to nodes panel.
  • Ignite-Kafka Connector certified by Confluent: https://docs.gridgain.com/v8.4/docs/certified-kafka-connector.
  • SQL: Added ability to create predefined SQL schemas on a node.
  • SQL: Fixed possible memory leak when result set size is multiple of page size.
  • REST: Fixed serialization of BinaryObjects to JSON.
  • Visor CMD: Added "cache -slp" and "cache -rlp" commands to show and reset lost partitions for specified cache.
  • Added SslContextFactory.protocols and SslContextFactory.cipherSuites properties to configure encryption algorithms.
  • Fixed failure detection in case of not receiving metrics updates from clients.
  • log4j 2x version was changed to 2.11.0.
  • Jetty version updated to 9.4.11.v20180605.


Here are the direct download links:

Ultimate Edition: https://gridgain.com/media/gridgain-ultimate-fabric-8.4.9.zip 

Enterprise Edition: https://gridgain.com/media/gridgain-enterprise-fabric-8.4.9.zip

Professional Edition: https://gridgain.com/media/gridgain-professional-fabric-2.4.9.zip 


Versions in Maven:

8.4.9 for gridgain-core artifact

2.4.9 for ignite-xxx artifacts


Regards,

GridGain Support Team

GridGain has released version 1.7.21.

 

The following main changes are included in this version:

  • Several small issues were fixed.

Here are the direct download links:

Enterprise Edition: https://gridgain.com/media/gridgain-enterprise-fabric-7.7.21.zip 

Professional Edition: https://gridgain.com/media/gridgain-professional-fabric-7.7.21.zip

 

Versions in Maven:

7.7.21 for gridgain-core artifact

1.7.21 for ignite-xxx artifacts

 

Regards,

GridGain Support Team

[CVE-2014-0114]: GridGain is vulnerable to existing CVE-2014-0114


Severity: Important


Vendor: GridGain, Inc.


Versions Affected:

- GridGain Professional Edition 2.5.1 or earlier

- GridGain Ultimate and Enterprise Editions 8.5.1 or earlier


Impact:An attacker can execute arbitrary code on GridGAin nodes in the case when GridGain classpath contains arbitrary vulnerable classes.


Description:GridGain used commons-beanutils-1.8.3.jar library which did not suppress the class property, which allowed remote attackers to "manipulate" the ClassLoader and execute arbitrary code via the class parameter, as demonstrated by the passing of this parameter to the getClass method of the ActionForm object in Struts 1.


Mitigation:

- All GridGain versions: make sure there are no vulnerable classes among your custom code used in GridGain.

- Upgrade to GridGain Professional Edition 2.5.2 or later, GridGain Enterprise and Ultimate Edition 8.5.2 or later.


References:

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0114


--

Denis Magda,On behalf of GridGain team.

GridGain has released version 7.9.12.

 

The following main changes are included in this version:

  • When an IgniteCompute call results in an exception, full exception chain will be propagated to the caller; the exception thrown from IgniteCompute methods may now differ from the previous behavior.

  • Added Collections.singletonList support to BinaryMarshaller.

 

Here are the direct download links:

Enterprise Edition: https://gridgain.com/media/gridgain-enterprise-fabric-7.9.12.zip

Professional Edition: ttps://gridgain.com/media/gridgain-professional-fabric-1.9.12.zip

 

Versions in Maven:

7.9.12 for gridgain-core artifact

1.9.12 for ignite-xxx artifacts

 

Regards,

GridGain Support Team

GridGain has released version 7.7.20.

 

The following main changes are included in this version:

  • Fixed server fail on a restart when a client reconnects in case of enabled security authentication.

 

Here are the direct download links:

Enterprise Edition: https://gridgain.com/media/gridgain-enterprise-fabric-7.7.20.zip

Professional Edition: https://gridgain.com/media/gridgain-professional-fabric-1.7.20.zip

 

Versions in Maven:

7.7.20 for gridgain-core artifact

1.7.20 for ignite-xxx artifacts

 

Regards,

GridGain Support Team

CVE-2018-1295: Possible Execution of Arbitrary Code Within Deserialization Endpoints of Apache Ignite


Severity: Important


Vendor: GridGain, Inc.


Versions Affected:

* Apache Ignite 2.3 and earlier

* GridGain Professional Edition 2.4.2 and earlier

* GridGain Enterprise and Ultimate Editions 8.3.3 and earlier


Impact:

An attacker can execute arbitrary code on Apache Ignite and GridGain nodes in the case when the classpath contains arbitrary vulnerable classes.


Description:

Apache Ignite serialization mechanism does not have a list of classes allowed for serialization/deserialization, which makes it possible to run arbitrary code when 3-rd party vulnerable classes are present in Ignite classpath. The vulnerability can be exploited if the one sends a specially prepared form of a serialized object to one of the deserialization endpoints of some Ignite components -   discovery SPI, Ignite persistence, Memcached endpoint, socket steamer.


Mitigation:

•    All Ignite versions: make sure there are no vulnerable classes among your custom code used in GridGain.

•    Upgrade to GridGain Professional Edition 2.4.3, GridGain Enterprise or Ultimate Edition 8.3.4 or later and use IGNITE_MARSHALLER_WHITELIST and/or IGNITE_MARSHALLER_BLACKLIST system properties to define classes allowed for deserialization


Credit:

The vulnerability was discovered by Man Yue Mo of lgtm.com.


References:

* http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1295


Sincerely yours,

GridGain Team