QID 198633

Date Published: 2022-01-17

QID 198633: Ubuntu Security Notification for Apache Log4j 1.2 Vulnerability (USN-5223-1)

Ubuntu has released a security update for apache to fix the vulnerabilities.

2 was vulnerable to deserialization ofuntrusted data if the configuration file was editable.
An attacker could usethis vulnerability to cause a dos or possibly execute arbitrary code.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as High - 6 severity.
  • Solution
    Refer to Ubuntu security advisory USN-5223-1 for updates and patch information.
    Vendor References

    CVEs related to QID 198633

    Software Advisories
    Advisory ID Software Component Link
    USN-5223-1 Ubuntu Linux URL Logo ubuntu.com/security/notices/USN-5223-1