Skip to content

Log4J vulnerability? #2024

Closed Answered by wenzeslaus
hannesaddec asked this question in Q&A
Dec 17, 2021 · 3 comments · 2 replies
Discussion options

You must be logged in to vote

There is no Java or Log4J in the source code:

I don't know how to find transitive dependencies for platform-dependent C and C++ libraries, so feel encouraged to contribute in this area.

The code is scanned with GitHub CodeQL which now includes Log4j CVE-2021-44228 (Remote code injection in Log4j) in question (PRs 7423 and 7354).

Replies: 3 comments 2 replies

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
2 replies
@lucadelu
Comment options

@hannesaddec
Comment options

Comment options

You must be logged in to vote
0 replies
Answer selected by hannesaddec
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
4 participants