lel99999 / dev_MesosRI

Mesos re-implementation/Re-imagined/Reference Implementation

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

dev_MesosRI

Mesos re-implementation/Re-imagined/Reference Implementation

Docker Containerization

Update

Log4j Fix for v1.2.x & v2.x

  • v1.2
    Class File CVE
    org/apache/log4j/net/SocketAppender.class CVE-2019-17571
    org/apache/log4j/net/SocketServer.class CVE-2019-17571
    org/apache/log4j/net/SMTPAppender$1.class CVE-2020-9488
    org/apache/log4j/net/SMTPAppender.class CVE-2020-9488
    org/apache/log4j/net/JMSAppender.class CVE-2021-4104
    org/apache/log4j/net/JDBCAppender.class CVE-2022-23305
    org/apache/log4j/chainsaw/*.class CVE-2022-23307

    ## Remove Class file
    $sudo zip -d log4j-1.2.17.jar 'org/apache/log4j/net/JMSAppender.class'
    
    ## Remove Multiple Class files
    $sudo zip -d log4j.jar 'org/apache/log4j/net/JMSAppender.class' 'org/apache/log4j/net/SocketAppender.class' 'org/apache/log4j/net/SocketServer.class' 'org/apache/log4j/net/SMTPAppender$1.class' 'org/apache/log4j/net/SMTPAppender.class'
    
  • v2.x

    $sudo zip -q -d "$LOG4J_JAR" org/apache/logging/log4j/core/lookup/JndiLookup.class
    

About

Mesos re-implementation/Re-imagined/Reference Implementation


Languages

Language:Dockerfile 100.0%