log4j-1.2.17.jar

solidsnake

Member
Joined
Oct 6, 2021
Messages
50
Reaction score
2
Credits
654
/usr/openv/lib/java/log4j-1.2.17.jar

I want to close the log4j vulnerability. For this, I will make log4j-1.2.17.jar.old in this directory and then I will throw this log4j-core-2.24.3.jar file from apache-log4j-2.24.3-bin.zip here.

/usr/openv/lib/java/log4j-core-2.24.3.jar

Does this method work or should it be done in another way?
 


ENGLISH, Please
 
from the little bit of research I did (with only a passing understanding of L4J):

Is there a fix for Log4j vulnerability?​

There is no one solution or system-wide patch available to fix the Log4j vulnerability. Updating Log4j to its latest version can remedy Logj4 exploits, but it does not guarantee full protection. Any Log4j vulnerability must be individually patched on each system affected.
 


Members online


Top