-
Task
-
Resolution: Won't Do
-
Major
-
None
-
None
-
None
-
False
-
False
-
Was superseded by the build from EAP/Fuse.
-
PNC Build: https://orch.psi.redhat.com/pnc-web/#/projects/1109
Log4j 1.2.17 needs to be rebuilt without JMSAppender (CVE-2021-4104), SocketServer (CVE-2019-17571) and SMTPAppender (CVE-2020-9488). Details on this GH thread.
The original 1.2.17 build is so old that is it not on PNC. It was originally done in BREW.
- blocks
-
ENTMQST-3642 Productization tasks for the 1.6.7 release
- Closed
-
ENTMQST-3668 Rebuild Kafka 3.0.0 with fixed Log4j 1.x
- Closed
-
ENTMQST-3669 Rebuild Kafka 2.8.0 with fixed Log4j 1.x
- Closed