Oval Definition:oval:org.opensuse.security:def:73762
Revision Date:2021-12-17Version:1
Title:Security update for log4j12 (Important)
Description:

This update for log4j12 fixes the following issues:

- CVE-2021-4104: Disable the JMSAppender class from log4j to protect against the log4jshell vulnerability. [bsc#1193662]
Family:unixClass:patch
Status:Reference(s):1125401
1169740
1171355
1172651
1173334
1177943
1193662
992038
CVE-2018-8956
CVE-2020-11868
CVE-2020-13817
CVE-2020-14779
CVE-2020-14781
CVE-2020-14782
CVE-2020-14792
CVE-2020-14796
CVE-2020-14797
CVE-2020-14798
CVE-2020-14803
CVE-2020-15025
CVE-2021-4104
SUSE-SU-2020:3359-1
SUSE-SU-2021:4112-1
Platform(s):SUSE Linux Enterprise Desktop 15 SP2
SUSE Linux Enterprise High Performance Computing 15 SP2
SUSE Linux Enterprise Module for Basesystem 15 SP2
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server for SAP Applications 15 SP2
SUSE Linux Enterprise Storage 7
SUSE Manager Proxy 4.1
SUSE Manager Server 4.1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed
  • AND Package Information
  • ntp-4.2.8p15-4.10 is installed
  • OR ntp-doc-4.2.8p15-4.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • AND Package Information
  • java-11-openjdk-11.0.9.0-3.48 is installed
  • OR java-11-openjdk-demo-11.0.9.0-3.48 is installed
  • OR java-11-openjdk-devel-11.0.9.0-3.48 is installed
  • OR java-11-openjdk-headless-11.0.9.0-3.48 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • AND log4j12-1.2.17-4.3.1 is installed
  • BACK