Uploaded image for project: 'Archiva (Retired)'
  1. Archiva (Retired)
  2. MRM-2027

Update log4j2 to 2.17.0

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • 2.2.6
    • 2.2.7
    • None
    • None

    Description

      There is another vulnerability for log4j2

      CVE-2021-45105

      It is considered as low risk for archiva, should work only when users change the log configuration. But we add this update for the next release.

       

      Attachments

        Activity

          People

            martin_s Martin Schreier
            martin_s Martin Schreier
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: