Apache Log4j2 <=2.14.1 JNDI features used in configuration, log messages, and parameters do not protect against attacker controlled LDAP and other JNDI related endpoints. An attacker who can control log messages or log message parameters can execute arbitrary code loaded from LDAP servers when message lookup substitution is enabled
Release : ALL Supported Versions
CA EEM (all versions) is not impacted by vulnerability CVE-2021-44228
https://nvd.nist.gov/vuln/detail/CVE-2021-44228
Service Operations Insight (SOI) in not affected by the log4j zero day vulnerability
However, the Ca Help Desk Connector is:
https://knowledge.broadcom.com/external/article/230292/
CA Process Automation is not affected by the log4j zero day vulnerability
https://knowledge.broadcom.com/external/article/230306/