To download packages, you need to log in and have a qualifying subscription.
gpp_maybe
Security update for log4j
SUSE-SLE-SAP-12-SP3-2022-212
This update for log4j fixes the following issues: - CVE-2022-23307: Fix deserialization issue by removing the chainsaw sub-package. (bsc#1194844) - CVE-2022-23305: Fix SQL injection by removing src/main/java/org/apache/log4j/jdbc/JDBCAppender.java. (bsc#1194843) - CVE-2022-23302: Fix remote code execution by removing src/main/java/org/apache/log4j/net/JMSSink.java. (bsc#1194842)
-
Release DateJan 27 2022
-
References
-
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Server for SAP Applications 12.3 x86_64
-
Packages
SUSE Linux Enterprise Server for SAP Applications 12.3 ppc64le
-
Packages