Wiki source code of eMagiz Runtime - 5.0.4

Last modified by Erik Bakker on 2023/01/23 13:55

Hide last authors
Erik Bakker 10.1 1 Fourth maintenance release in the eMagiz 5.0.x line. This release fixes Log4J security vulnerabilities CVE-2021-44228 and CVE-2021-45046.
Erik Bakker 1.1 2
eMagiz 12.1 3 Find out more in our [[Release blog>>Main.Release Information.Release Blogs.Apache Log4J vulnerability patch - Release blog.WebHome||target="blank"]].
Erik Bakker 1.1 4
Erik Bakker 4.1 5
Erik Bakker 10.1 6 ===== Bug Fixes =====
Erik Bakker 1.1 7
Erik Bakker 10.1 8 * Updated OPS4J Pax Logging version 1.10.1 to version 1.11.11. Internally this uses Apache Log4j 2, which is updated from version 2.8.2 to 2.16.0 in this release. This fixed the following two security vulnerabilities:
Erik Bakker 13.1 9 ** [[CVE-2021-44228 (CVSS score 10.0 - Critical)>>https://nvd.nist.gov/vuln/detail/CVE-2021-44228||target="blank"]]
10 ** [[CVE-2021-45046 (CVSS score 3.7 - Low)>>https://nvd.nist.gov/vuln/detail/CVE-2021-45046||target="blank"]]
Erik Bakker 1.1 11
12