CA Datamart LOG4J1.x Vulnerabilities
search cancel

CA Datamart LOG4J1.x Vulnerabilities

book

Article ID: 367890

calendar_today

Updated On:

Products

CA Service Management - Service Desk Manager CA Service Desk Manager

Issue/Introduction

Vulnerability report found files with LOG4J 1.x files in the CA DATAMART directory.

CA\Datamart\pdi-ce-7.0.0.0-25\data-integration\plugins\pentaho-big-data-plugin\hadoop-configurations\hdp24\lib\client\log4j-1.2.17.jar

CA\Datamart\pdi-ce-7.0.0.0-25\data-integration\plugins\pentaho-big-data-plugin\hadoop-configurations\emr41\lib\client\log4j-1.2.17.jar

CA\Datamart\pdi-ce-7.0.0.0-25\data-integration\plugins\pentaho-big-data-plugin\hadoop-configurations\cdh58\lib\client\log4j-1.2.17.jar

CA\Datamart\pdi-ce-7.0.0.0-25\data-integration\plugins\kettle5-log4j-plugin\lib\log4j-1.2.17.jar

CA\Datamart\pdi-ce-7.0.0.0-25\data-integration\lib\log4j-1.2.17.jar

CA\Datamart\pdi-ce-7.0.0.0-25\data-integration\lib\log4j-1.2.15.jar

CA\Datamart\lib\log4j-1.2.17.jar

CA\Datamart\temp\lib\log4j-1.2.13.jar

Environment

CA Service Desk Manager 17.3 and 17.4

CA Datamart

All Supported Windows Operating Systems

Resolution

Please contact Broadcom Support to obtain a script that will remediate the LOG4J 1.x vulnerabilities in CA Datamart