[haiku-sysadmin] Re: HDS and Log4J Vulnerability

  • From: "Alexander von Gluck IV" <kallisti5@xxxxxxxxxxx>
  • To: haiku-sysadmin@xxxxxxxxxxxxx
  • Date: Sat, 11 Dec 2021 14:00:34 +0000

December 10, 2021 3:21 AM, "Andrew Lindesay" <apl@xxxxxxxxxxxxxx> wrote:

Hello;

You may be aware of this [1] vulnerability around Java tech that has recently 
been discovered. I
have had a look and believe that HDS should be unaffected because is it not 
using `log4j` and is
also using a version of the JVM that is not impacted.

Regards

[1] https://www.lunasec.io/docs/blog/log4j-zero-day

Thanks for confirming Andrew.  We were wondering about this yesterday.

Thanks!

 -- Alex

Other related posts: