Patch Reviews - DB (MOSC)

MOSC Banner

Log4j vulnerabilities

I've got a 19C database running on Windows 2016. Our network security folks are pinging me on log4j vulnerabilities. I searched for log4 files and only found

D:\oracle\product\19.0.0\dbhome_1\suptools\tfa\release\tfa_home\jlib\log4j-api-2.9.1.jar

and

D:\oracle\product\19.0.0\dbhome_1\suptools\tfa\release\tfa_home\jlib\log4j-core-2.9.1.jar

Is there a one-off patch for this or can I just delete these 2 files with breaking TFA?

Thanks

Steve

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center