View Issue Details

IDProjectCategoryView StatusLast Update
0003528SymmetricDSTaskpublic2018-07-12 18:12
ReporterFrank.Conover Assigned Tochenson  
Prioritynormal 
Status closedResolutionno change required 
Product Version3.9.6 
Summary0003528: The log4j library has a vulnerability.
DescriptionThe log4j library has a vulnerability.

log4j-1.2.17.jar , CVE-2017-5645 , Severity: High

This library has reached end of life.
Upgrade to log4j 2.
TagsNo tags attached.

Activities

Frank.Conover

2018-07-12 17:51

reporter   ~0001216

This has been reported as a false positive. Log4j version 1 is under review and a new CVE will be created if one exists. I don't seem to be able to close this ticket.

Issue History

Date Modified Username Field Change
2018-04-23 20:02 Frank.Conover New Issue
2018-07-12 17:51 Frank.Conover Note Added: 0001216
2018-07-12 18:12 chenson Assigned To => chenson
2018-07-12 18:12 chenson Status new => closed
2018-07-12 18:12 chenson Resolution open => no change required