Skip to content

Commit b01f761

Browse files
committed
prepare new version 5.4.3, update changes pages
1 parent 9ddd26b commit b01f761

File tree

2 files changed

+501
-4
lines changed

2 files changed

+501
-4
lines changed

Diff for: xdocs/changes.xml

+4-4
Original file line numberDiff line numberDiff line change
@@ -41,13 +41,13 @@ Earlier changes are detailed in the <a href="changes_history.html">History of Pr
4141
</note>
4242

4343

44-
<!-- =================== 5.4.2 =================== -->
44+
<!-- =================== 5.4.3 =================== -->
4545

46-
<h1>Version 5.4.2</h1>
46+
<h1>Version 5.4.3</h1>
4747
<p>
4848
Summary
4949
</p>
50-
<p>This version is a fix release against the vulnerability CVE-2021-44228: Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints.
50+
<p>This version is a fix release against the vulnerability CVE-2021-45105: Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3) did not protect from uncontrolled recursion from self-referential lookups. This allows an attacker with control over Thread Context Map data to cause a denial of service when a crafted string is interpreted.
5151
</p>
5252
<ul>
5353
<li><a href="#New and Noteworthy">New and Noteworthy</a></li>
@@ -114,7 +114,7 @@ Summary
114114

115115
<ch_section>Non-functional changes</ch_section>
116116
<ul>
117-
<li>Updated Apache log4j2 to 2.16.0 (from 2.13.3).</li>
117+
<li>Updated Apache Log4j2 to 2.17.0 (from 2.16.0).</li>
118118
</ul>
119119

120120
<!-- =================== Bug fixes =================== -->

0 commit comments

Comments
 (0)