CVE-2021-44228/CVE-2021-45046 Advisory for Oracle Demantra
Reg recent security vulnerability alert for Apache log4j as per note Impact of December 2021 Apache Log4j Vulnerabilities on Oracle Products and Services (CVE-2021-44228, CVE-2021-45046) (Doc ID 2827611.1),
"Demantra Demand Management [Product ID 2100]" is in vulnerability "Oracle products with patches or mitigation available" with patch availability "MOS note 2828944.1".
The note Doc ID 2828944.1, is for Demantra version 12.2.7.1 and above.
What about the Demantra versions less than 12.2.7.1 (ex: 12.2.3,12.2.4 or so on).
Are they not impacted (or) under investigatin still?
Thanks,
Ganesh Shankar