[SECURITY] Upgrade log4j to 2.17.1 as a vulnerability workaround
Closed this issue · 3 comments
azagniotov commented
This ticket is related to #416 and #433 and is to capture PRs made as a result of changes advised by the Apache Foundation in https://logging.apache.org/log4j/2.x/security.html#log4j-2.17.1 as part of workaround to the recently discovered vulnerabilities in log4j v2.x.x
. This ticket enhances the #267
To address:
azagniotov commented
Applied retroactive fix for tag: https://github.com/azagniotov/stubby4j/releases/tag/v7.3.3 and rebuilt stubby4j Docker image tags:
azagniotov/stubby4j:7.3.3-jre8
azagniotov/stubby4j:7.3.3-jre11
azagniotov/stubby4j:7.3.3-jre15
azagniotov commented
Applied retroactive fix for tag: https://github.com/azagniotov/stubby4j/releases/tag/v7.4.0 and rebuilt stubby4j Docker image tags:
azagniotov/stubby4j:7.4.0-jre8
azagniotov/stubby4j:7.4.0-jre11
azagniotov/stubby4j:7.4.0-jre16
azagniotov commented
Applied retroactive fix for tag: https://github.com/azagniotov/stubby4j/releases/tag/v7.5.0 and rebuilt stubby4j Docker image tags:
v7.5.0
azagniotov/stubby4j:7.5.0-jre8
azagniotov/stubby4j:7.5.0-jre11
azagniotov/stubby4j:7.5.0-jre16