Bug 29770

Summary: jitsi has bundled log4j - security issue CVE-2021-45046
Product: Mageia Reporter: papoteur <yvesbrungard>
Component: RPM PackagesAssignee: Java Stack Maintainers <java>
Status: RESOLVED INVALID QA Contact:
Severity: normal    
Priority: Normal    
Version: 8   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: jitsi CVE:
Status comment:

Description papoteur 2021-12-15 23:03:01 CET
library log4j release is bundled in jitsi and is affected by a security issue.

https://github.com/jitsi/jitsi/tree/master/lib/bundle
Comment 1 David Walser 2021-12-16 20:36:45 CET
Wrong CVE and Bug 29771 covers this.

Resolution: (none) => INVALID
Status: NEW => RESOLVED