Re: Log4j vulnerability exposure

2021-12-16 Thread Mike Jumper
On Thu, Dec 16, 2021, 13:02 Mike Jumper  wrote:

> On Thu, Dec 16, 2021, 12:54 Tim Worcester 
> wrote:
>
>> Not affected: https://github.com/apache/guacamole-website/pull/97
>>
>
> The live version of the above:
>
> https://guacamole.apache.org/security/#not-affected-by-cve-2021-44228
>

Also, Jose, as you mentioned Glyptodon, there is similar clarification
there:

https://glyp.to/doc/latest/faq-for-cve-2021-44228-42598682.html

- Mike


Re: Log4j vulnerability exposure

2021-12-16 Thread Jose Moreno Delgado
Thank you so much for your help.El 16 dic. 2021 21:53, Tim Worcester  escribió:Not affected: https://github.com/apache/guacamole-website/pull/97On Thu, Dec 16, 2021 at 3:52 PM Jose Moreno Delgado  wrote:






Hi, I would like to know if Guacamole 1.3.0 based on Docker Glyptonodon is affected by this recent attack based on Java for logging, log4j.




BR.





Re: Log4j vulnerability exposure

2021-12-16 Thread Mike Jumper
On Thu, Dec 16, 2021, 12:54 Tim Worcester 
wrote:

> Not affected: https://github.com/apache/guacamole-website/pull/97
>

The live version of the above:

https://guacamole.apache.org/security/#not-affected-by-cve-2021-44228

- Mike


Re: Log4j vulnerability exposure

2021-12-16 Thread Tim Worcester
Not affected: https://github.com/apache/guacamole-website/pull/97

On Thu, Dec 16, 2021 at 3:52 PM Jose Moreno Delgado 
wrote:

> Hi, I would like to know if Guacamole 1.3.0 based on Docker Glyptonodon is
> affected by this recent attack based on Java for logging, log4j.
>
> BR.
>


Log4j vulnerability exposure

2021-12-16 Thread Jose Moreno Delgado
Hi, I would like to know if Guacamole 1.3.0 based on Docker Glyptonodon is 
affected by this recent attack based on Java for logging, log4j.

BR.