The log4j vulnerability and Solaris Cluster
There has been a lot of questions about this lately.
Oracle Solaris Cluster does not use the log4j files.
Starting with OSC 4.4 SRU 10 or newer the files are included with the Cluster Manager software. The following document has the steps to mitigate the possibility of the files being used.
Impact of Apache Log4j Vulnerabilities on Solaris Cluster (CVE-2021-44228, CVE-2021-45046) (Doc ID 2829429.1)
Regards,
RyanC