Hadoop 3.4.1.450 (DEP 10.1.1) Release Notes

The notes below relate specifically to the HPE Data Fabric distribution of Apache Hadoop. You may also be interested in the Apache Hadoop changelog and the Apache Hadoop home page.

These release notes contain only HPE-specific information and are not necessarily cumulative in nature. For information about how to use the release notes, see Ecosystem Component Release Notes.

Version 3.4.1.450
Release Date July 2026
Version Interoperability See Ecosystem Pack Components and OS Support.
GitHub Source https://github.com/mapr/hadoop-common/
GitHub Release Tag 3.4.1.450-dep-1011
Maven Artifacts https://repository.mapr.com/maven/
Package Names Navigate to https://package.ezmeral.hpe.com/releases/MEP/ and select your DEP and OS to view the list of package names.

New in this Release

Hadoop 3.4.1.450 introduces the following enhancements or HPE platform-specific behavior changes:
  • CVE updates
  • Bug fixes

Fixes

This HPE release includes the following fixes on the base Apache release:
GitHub Commit Number Date (YYYY-MM-DD) HPE Fix Number and Description
30446d10507 2026-06-16 MAPRHADOOP-600: Update Netty to 4.1.135.Final due to CVE-2026-44249
c90d0ec02a6 2026-06-06 MAPRHADOOP-600: Update derby to 10.17.1.0 due to CVE-2022-46337
b0f71f712e5 2026-06-05 MAPRHADOOP-600: Update assertj to 3.27.7 due to CVE-2026-24400
fcbf7e57c16 2026-06-03 MAPRHADOOP-605: Fix jersey-client jar conflict when upgrading mapr-hadoop-core to mapr-hadoop-client
7ba2d33f4fa 2026-05-21 Backport HADOOP-19829. Bump lz4-java 1.10.4
d20c03e3a1 2026-05-21 Backport HADOOP-19878. Upgrade to Netty 4.1.133.Final due to CVEs
80cc233b6fe 2026-05-21 MAPRHADOOP-600: Update shelljs for yarn-applications-catalog-webapp due security warning
ef9b7a678f7 2026-05-21 Backport HADOOP-19867. Upgrade log4j to 2.25.4 for security
8ea0ad57171 2026-05-21 Backport HADOOP-19888. Bump mina-core from 2.0.27 to 2.0.28
fae59694411 2026-05-21 MAPRHADOOP-600: Update org.codehaus.plexus:plexus-utils to 3.6.1 due to CVE-2025-67030
7505bc96119 2026-05-21 MAPRHADOOP-600: Update ch.qos.logback:logback-classic to 1.2.13 due to vulnerability
2a442884e26 2026-05-21 MAPRHADOOP-600: Updated jquery to 3.5.0 for yarn-applications-catalog-webapp due to CVE
d9170e58d78 2026-03-31 MAPRYARN-489: Yarn logs command failed on the edge node

Known Issues and Limitations

Hadoop 3.4.1.450 has the following known issue and limitation:

  • Multiple labels are not supported within the same node or queue.
  • YARN UI2. If you need to go to the login page after logging out, you must go to the main page and refresh it.

Resolved Issues

None.