Log4j vulnerabilities
I've got a 19C database running on Windows 2016. Our network security folks are pinging me on log4j vulnerabilities. I searched for log4 files and only found
D:\oracle\product\19.0.0\dbhome_1\suptools\tfa\release\tfa_home\jlib\log4j-api-2.9.1.jar
and
D:\oracle\product\19.0.0\dbhome_1\suptools\tfa\release\tfa_home\jlib\log4j-core-2.9.1.jar
Is there a one-off patch for this or can I just delete these 2 files with breaking TFA?
Thanks
Steve