Details
-
Sub-task
-
Status: Closed
-
Medium
-
Resolution: Done
-
None
-
None
-
Policy 6/8-6/19, Policy 6/23-7/06
Description
In policy/common log4j is inherited by all the other policy projects. Task is to upgrade to:
log4j : 1.2.17 | CVE-2019-17571 | 9 | 2.13.1 (log4j-core) |
eg Remove that dependency and use log4j-core
Attachments
# | Subject | Branch | Project | Status | CR | V |
---|---|---|---|---|---|---|
109070,4 | Removing log4j from policy/common | master | policy/common | Status: MERGED | +2 | +1 |
109071,2 | Change related to log4j removal needed in models | master | policy/models | Status: MERGED | +2 | +1 |
109226,1 | Revert "AAF Version change for log4j" | master | policy/parent | Status: MERGED | +2 | +1 |
109355,2 | AAF Version change for log4j | master | policy/parent | Status: MERGED | +2 | +1 |
109385,1 | Removing log4j from policy/parent | master | policy/parent | Status: MERGED | +2 | +1 |
109390,1 | Removing log4j from feature-state-management/pom.xml | master | policy/drools-pdp | Status: MERGED | +2 | +1 |
109531,1 | AAF Version upgrade to 2.1.21 | master | policy/parent | Status: MERGED | +2 | +1 |
109532,3 | Fix Junit failed after AAF version change 2.1.21 | master | policy/common | Status: MERGED | +2 | +1 |
109579,2 | Fixing error with Main class name usage in APEX | master | policy/apex-pdp | Status: MERGED | +2 | +1 |