Skip to content

kenlavbah/log4jnotes

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

4 Commits
 
 

Repository files navigation

log4jnotes

solr

grype solr | grep -i 2021
 ✔ Vulnerability DB        [no update available]
 ✔ Pulled image
 ✔ Loaded image
 ✔ Parsed image
 ✔ Cataloged packages      [503 packages]
 ✔ Scanned image           [186 vulnerabilities]

commons-io                  2.5                            CVE-2021-29425       Medium
curl                        7.74.0-1.3+b1     (won't fix)  CVE-2021-22924       Low
curl                        7.74.0-1.3+b1     (won't fix)  CVE-2021-22945       Critical
curl                        7.74.0-1.3+b1     (won't fix)  CVE-2021-22946       High
curl                        7.74.0-1.3+b1     (won't fix)  CVE-2021-22947       Medium
curl                        7.74.0-1.3+b1     (won't fix)  CVE-2021-22898       Low
curl                        7.74.0-1.3+b1                  CVE-2021-22922       Negligible
curl                        7.74.0-1.3+b1                  CVE-2021-22923       Negligible
libc-bin                    2.31-13+deb11u2                CVE-2021-43396       Negligible
libc-bin                    2.31-13+deb11u2   (won't fix)  CVE-2021-33574       Critical
libc6                       2.31-13+deb11u2                CVE-2021-43396       Negligible
libc6                       2.31-13+deb11u2   (won't fix)  CVE-2021-33574       Critical
libcurl4                    7.74.0-1.3+b1     (won't fix)  CVE-2021-22924       Low
libcurl4                    7.74.0-1.3+b1     (won't fix)  CVE-2021-22945       Critical
libcurl4                    7.74.0-1.3+b1     (won't fix)  CVE-2021-22946       High
libcurl4                    7.74.0-1.3+b1     (won't fix)  CVE-2021-22947       Medium
libcurl4                    7.74.0-1.3+b1     (won't fix)  CVE-2021-22898       Low
libcurl4                    7.74.0-1.3+b1                  CVE-2021-22922       Negligible
libcurl4                    7.74.0-1.3+b1                  CVE-2021-22923       Negligible
libgcrypt20                 1.8.7-6           (won't fix)  CVE-2021-33560       High
libgmp10                    2:6.2.1+dfsg-1    (won't fix)  CVE-2021-43618       High
libncurses6                 6.2+20201114-2                 CVE-2021-39537       Negligible
libncursesw6                6.2+20201114-2                 CVE-2021-39537       Negligible
libsepol1                   3.1-1             (won't fix)  CVE-2021-36084       Low
libsepol1                   3.1-1             (won't fix)  CVE-2021-36085       Low
libsepol1                   3.1-1             (won't fix)  CVE-2021-36086       Low
libsepol1                   3.1-1             (won't fix)  CVE-2021-36087       Low
libsqlite3-0                3.34.1-3                       CVE-2021-36690       Negligible
libtinfo6                   6.2+20201114-2                 CVE-2021-39537       Negligible
log4j-1.2-api               2.14.1                         CVE-2021-44228       Critical
log4j-api                   2.14.1                         CVE-2021-44228       Critical
log4j-core                  2.14.1                         CVE-2021-44228       Critical
log4j-layout-template-json  2.14.1                         CVE-2021-44228       Critical
log4j-slf4j-impl            2.14.1                         CVE-2021-44228       Critical
log4j-web                   2.14.1                         CVE-2021-44228       Critical
ncurses-base                6.2+20201114-2                 CVE-2021-39537       Negligible
ncurses-bin                 6.2+20201114-2                 CVE-2021-39537       Negligible
post                                                       CVE-2021-27905       Critical
post                                                       CVE-2021-29262       High
post                                                       CVE-2021-29943       Critical
wget                        1.21-1+b1         (won't fix)  CVE-2021-31879       Medium

flink

grype flink | grep -i 2021
 ✔ Vulnerability DB        [no update available]
 ✔ Pulled image
 ✔ Loaded image
 ✔ Parsed image
 ✔ Cataloged packages      [225 packages]
 ✔ Scanned image           [105 vulnerabilities]

bash-java-utils   2.14.1                         CVE-2021-44228       Critical
curl              7.74.0-1.3+b1     (won't fix)  CVE-2021-22924       Low
curl              7.74.0-1.3+b1     (won't fix)  CVE-2021-22945       Critical
curl              7.74.0-1.3+b1     (won't fix)  CVE-2021-22946       High
curl              7.74.0-1.3+b1     (won't fix)  CVE-2021-22947       Medium
curl              7.74.0-1.3+b1     (won't fix)  CVE-2021-22898       Low
curl              7.74.0-1.3+b1                  CVE-2021-22922       Negligible
curl              7.74.0-1.3+b1                  CVE-2021-22923       Negligible
libc-bin          2.31-13+deb11u2                CVE-2021-43396       Negligible
libc-bin          2.31-13+deb11u2   (won't fix)  CVE-2021-33574       Critical
libc6             2.31-13+deb11u2                CVE-2021-43396       Negligible
libc6             2.31-13+deb11u2   (won't fix)  CVE-2021-33574       Critical
libcurl4          7.74.0-1.3+b1     (won't fix)  CVE-2021-22924       Low
libcurl4          7.74.0-1.3+b1     (won't fix)  CVE-2021-22945       Critical
libcurl4          7.74.0-1.3+b1     (won't fix)  CVE-2021-22946       High
libcurl4          7.74.0-1.3+b1     (won't fix)  CVE-2021-22947       Medium
libcurl4          7.74.0-1.3+b1     (won't fix)  CVE-2021-22898       Low
libcurl4          7.74.0-1.3+b1                  CVE-2021-22922       Negligible
libcurl4          7.74.0-1.3+b1                  CVE-2021-22923       Negligible
libgcrypt20       1.8.7-6           (won't fix)  CVE-2021-33560       High
libgmp10          2:6.2.1+dfsg-1    (won't fix)  CVE-2021-43618       High
libncursesw6      6.2+20201114-2                 CVE-2021-39537       Negligible
libsepol1         3.1-1             (won't fix)  CVE-2021-36084       Low
libsepol1         3.1-1             (won't fix)  CVE-2021-36085       Low
libsepol1         3.1-1             (won't fix)  CVE-2021-36086       Low
libsepol1         3.1-1             (won't fix)  CVE-2021-36087       Low
libsqlite3-0      3.34.1-3                       CVE-2021-36690       Negligible
libtinfo6         6.2+20201114-2                 CVE-2021-39537       Negligible
log4j-1.2-api     2.14.1                         CVE-2021-44228       Critical
log4j-api         2.14.1                         CVE-2021-44228       Critical
log4j-core        2.14.1                         CVE-2021-44228       Critical
log4j-slf4j-impl  2.14.1                         CVE-2021-44228       Critical
ncurses-base      6.2+20201114-2                 CVE-2021-39537       Negligible
ncurses-bin       6.2+20201114-2                 CVE-2021-39537       Negligible
wget              1.21-1+b1         (won't fix)  CVE-2021-31879       Medium

storm

log4j-1.2-api                                 2.11.2                              CVE-2021-44228       Critical
log4j-api                                     2.11.2                              CVE-2021-44228       Critical
log4j-core                                    2.11.2                              CVE-2021-44228       Critical
log4j-slf4j-impl                              2.11.2                              CVE-2021-44228       Critical
log4j-web                                     2.11.2                              CVE-2021-44228       Critical
maven-artifact                                3.6.0                               CVE-2021-26291       Critical
maven-builder-support                         3.6.0                               CVE-2021-26291       Critical
maven-model                                   3.6.0                               CVE-2021-26291       Critical
maven-model-builder                           3.6.0                               CVE-2021-26291       Critical
maven-repository-metadata                     3.6.0                               CVE-2021-26291       Critical
maven-resolver-api                            1.3.3                               CVE-2021-26291       Critical
maven-resolver-connector-basic                1.3.3                               CVE-2021-26291       Critical
maven-resolver-impl                           1.3.3                               CVE-2021-26291       Critical
maven-resolver-provider                       3.6.0                               CVE-2021-26291       Critical
maven-resolver-spi                            1.3.3                               CVE-2021-26291       Critical
maven-resolver-transport-file                 1.3.3                               CVE-2021-26291       Critical
maven-resolver-transport-http                 1.3.3                               CVE-2021-26291       Critical
maven-resolver-util                           1.3.3                               CVE-2021-26291       Critical

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors