Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add new 2.17.1 log4j mitigation version 4.3 #1132

Merged
merged 2 commits into from
Dec 30, 2021

Conversation

rauldpm
Copy link
Member

@rauldpm rauldpm commented Dec 29, 2021

Main PR: #1130

This PR updates the log4j version to mitigate the new log4j vulnerability (CVE-2021-44832)

In addition, since log4j hides the old versions, it has been decided to host the package with the versions, which will be updated if the version changes, in this way we prevent users from making installations without any fix in case the package is updated to another version

@rauldpm rauldpm requested a review from alberpilot December 29, 2021 16:04
@rauldpm rauldpm self-assigned this Dec 29, 2021
Copy link
Contributor

@alberpilot alberpilot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Lgtm

@alberpilot alberpilot merged commit f0065a0 into 4.3 Dec 30, 2021
@alberpilot alberpilot deleted the add_new_log4j_mitigation-4.3 branch December 30, 2021 07:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants