Unifier (MOSC)

MOSC Banner

How to upgrade "log4j" in unifier?(CVE-2021-44228)

in Unifier (MOSC) 4 commentsAnswered

Dear all

In unifier(version 20.12.11) using log4j(version 2.13) but We need to upgrade log4j(version 2.13) to log4j(version 2.15).

Because of CVE-2021-44228 security issue.


(unifier/apps/ROOT/WEB-INF/lib)

log4j-1.2-api-2.13.3.jar

log4j-api-2.13.3.jar

log4j-core-2.13.3.jar

log4j-slf4j-impl-2.13.3.jar

log4j-web-2.13.3.jar


Will replacing these files with newer ones(version 2.15) solve the security issue?


(for example

log4j-1.2-api-2.13.3.jar -> log4j-1.2-api-2.15.0.jar

log4j-api-2.13.3.jar ->log4j-api-2.15.0.jar

log4j-core-2.13.3.jar -> log4j-core-2.15.0.jar

log4j-slf4j-impl-2.13.3.jar -> log4j-slf4j-impl-2.15.0.jar

log4j-web-2.13.3.jar -> log4j-web-2.15.0.jar)

Tagged:

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center