Re: Inquiry on Apache Log4j's Effect on Cygwin Software

2021-12-23 Thread Brian Inglis
On 2021-12-23 08:19, Iyana Garry wrote: Is there any confirmation that Cygwin software is not impacted by the Apache Log4J vulnerabilities (CVE-2021-44228, CVE-2021-45046 and CVE-2021-45105)? Cygwin neither supports nor packages Java or log4j (Log for Java). -- Take care. Thanks, Brian

Re: Inquiry on Apache Log4j's Effect on Cygwin Software

2021-12-23 Thread Eliot Moss
On 12/23/2021 10:43 AM, Bill Stewart wrote: On Thu, Dec 23, 2021 at 8:19 AM Iyana Garry wrote: Is there any confirmation that Cygwin software is not impacted by the Apache Log4J vulnerabilities (CVE-2021-44228, CVE-2021-45046 and CVE-2021-45105)? I'm not sure why there would need to be any

Re: Inquiry on Apache Log4j's Effect on Cygwin Software

2021-12-23 Thread Bill Stewart
On Thu, Dec 23, 2021 at 8:19 AM Iyana Garry wrote: Is there any confirmation that Cygwin software is not impacted by the > Apache Log4J vulnerabilities (CVE-2021-44228, CVE-2021-45046 and > CVE-2021-45105)? > I'm not sure why there would need to be any such confirmation. Log4J is a Java