Spectrum & CVE-2021-45105 Vulnerability
search cancel

Spectrum & CVE-2021-45105 Vulnerability

book

Article ID: 231147

calendar_today

Updated On:

Products

CA Spectrum DX NetOps

Issue/Introduction

Spectrum & CVE-2021-45105 Vulnerability

Environment

Release : 10.4.x, 20.2.x, 21.2.x

 

Resolution

Regarding CVE-2021-45105 There is no workaround published by Log4J other than upgrading to Log4J 2.17.0 which is shipped as part of Spectrum 21.2.6

https://support.broadcom.com/external/content/release-announcements/General-Availability-Announcement-for-DX-NetOps-21.2.6/19969

https://community.broadcom.com/enterprisesoftware/communities/community-home/digestviewer/viewthread?MessageKey=0644f5e0-f35e-4d09-8760-e80422b76d67

 

Additional Information

CVE-2021-45105 Detail

CVE-2021-44228 & CVE-2021-45046: DX Netops Spectrum log4j vulnerability

https://logging.apache.org/log4j/2.x/

https://logging.apache.org/log4j/2.x/security.html