Details
-
Bug
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
2.17.1
-
None
-
java 11
Description
Dear colleagues,
we are using log4j2 with flume-ng appender.
The below vulnerabilities are found in the dependent jackson-mapper-asl-1.9.13.jar :
cve-2019-10202
cve-2019-10172
etc...
Please advise if this will be fixed and planned ETA in case it is already fixed
Thanks ,
Sasha
Attachments
Issue Links
- is related to
-
LOG4J2-3536 Upgrade Flume to 1.10.0
- Closed