02-07-2022 05:02 AM
Any plans to bump IPython version to 7.31.1 on the DBR 9.1 LTS runtime?
03-24-2022 03:31 AM
Hi @Merca Ovnerud , We’ve already upgraded ipython to 7.32.0 for MLR 11.0, which should have the patch. We’re also planning to upgrade it in the upcoming MLR 10.5.
We also plan to upgrade ipython to a patched version in DBR 10.5 and 11.0, and will not update existing runtimes.
02-07-2022 05:16 AM
Hi @ merca ! Thanks for your question! Let's see if your peers in the community have an answer to your question first. Or else I will get back to you soon. Thanks.
02-12-2022 01:31 AM
@Kaniz Fatma : looks like there is a spamming bot in here... Any functionality to report this kind of stuff?
02-14-2022 10:07 AM
@Merca Ovnerud - Yep. It was awful. I'm sorry I wasn't able to get to it sooner. We are working on better solutions. Thank you for letting us know.
02-16-2022 01:04 PM
Hi @Merca Ovnerud , The following release notes provide information about Databricks Runtime 9.1 LTS and Databricks Runtime 9.1 LTS Photon, powered by Apache Spark 3.1.2. Databricks released these images in September 2021. Photon is in Public Preview.
System environment
02-16-2022 06:42 PM
Hi @Kaniz Fatma .
Thank you for the reply.
It was tough not what I asked. What I really would like to know are you going to plan upgrade iPython to 7,31.1, especially since the current version installed is containing known vulnerabilities.
I'm reading the maintenance notes already every time in hope that the bump is already in place.
-Merca-
02-17-2022 12:09 AM
Hi @Merca Ovnerud ,
Thank you for reaching out!
Let us look into this for you, and we'll circle back with an update.
02-22-2022 01:46 PM
Hi @Merca Ovnerud ,
We don't upgrade IPython versions on runtime once it is released unless there’s a major security risk/perf reason. Even the latest DBR 10.3 is still using IPython 7.22.0, and the yet-to-be-released DBR 11.x is planned to use IPython 7.29.0.
May I know what features do you seek from IPython 7.31.1?
I think you may be able to use notebook scope libraries if you want to use the upgraded IPython version, but pls note that there could be feature incompatibilities with DBX notebooks.
02-23-2022 04:06 AM
Great, but again - as in my original question I do point out that there is known security risk in the iPython version 7.22.0 and it is patched in 7.31.1
Maybe the link is not easy to see, but here is link to annonced vureneabilty
or if you prefer full links in the comment: https://github.com/advisories/GHSA-pq7m-3gw7-gq5x
03-12-2022 03:35 AM
Hi @Merca Ovnerud , Thank you for bringing this to our attention.
We're working on it.
03-24-2022 03:31 AM
Hi @Merca Ovnerud , We’ve already upgraded ipython to 7.32.0 for MLR 11.0, which should have the patch. We’re also planning to upgrade it in the upcoming MLR 10.5.
We also plan to upgrade ipython to a patched version in DBR 10.5 and 11.0, and will not update existing runtimes.
05-24-2022 07:18 AM
Hi @Kaniz Fatma !
I just checked DBR 10.5 release notes and the IPython version listed there is 7.22.0 installed, but the version that is patched for this security issue is 7.31.1 Did I misread your last comment that it will be upgraded to safe version in DBR 10.5?
07-11-2022 01:08 AM
Hi @Merca Ovnerud, The following release notes provide information about Databricks Runtime 10.5, powered by Apache Spark™ 3.2.1. Databricks released these images in May 2022.
07-12-2022 08:02 PM
07-12-2022 02:06 AM
Hi @Merca Ovnerud , We haven't heard from you since my last response, and I was checking to see if my suggestions helped you.
Also, please don't forget to click the "Select as Best" button" whenever the information provided helps resolve your question.
Join a Regional User Group to connect with local Databricks users. Events will be happening in your city, and you won’t want to miss the chance to attend and share knowledge.
If there isn’t a group near you, start one and help create a community that brings people together.
Request a New Group