Re: [SECURITY] Apache Tomcat and CVE-2021-44228 (Log4j vulnerability) (also CVE-2021-45046 and CVE-2021-4104)

2021-12-17 Thread Mark Thomas
Unless there are objections, I'm planning on sending a follow-up to the original email to state (in summary) - more CVEs have been identified - given the amount of attention focussed on this there may be further CVEs - previous advice regarding the impact for Tomcat is essentially unchanged - f

Re: [SECURITY] Apache Tomcat and CVE-2021-44228 (Log4j vulnerability) (also CVE-2021-45046 and CVE-2021-4104)

2021-12-17 Thread Rainer Jung
LGTM! Am 17.12.2021 um 11:43 schrieb Mark Thomas: Unless there are objections, I'm planning on sending a follow-up to the original email to state (in summary) - more CVEs have been identified - given the amount of attention focussed on this there may be further CVEs - previous advice regarding