[Info-vax] Java, log4j, log4shell, and OpenVMS: CVE-2021-44228

Craig A. Berry craigberry at nospam.mac.com
Thu Dec 16 17:47:28 EST 2021


Note that log4j 2.16.0 has now been released to fix vulnerabilities
still present in the 2.15.0 released a few days ago, and many of the
mitigations published in the last week are now considered inadequate:

<https://logging.apache.org/log4j/2.x/security.html>





More information about the Info-vax mailing list