Apache Log4J Vulnerability and Impact to TIBCO Products and Services

Apache Log4J Vulnerability and Impact to TIBCO Products and Services

book

Article ID: KB0107996

calendar_today

Updated On:

Products Versions
All Products -

Description

TIBCO continues to work on investigating and identifying mitigations for the Apache Log4J vulnerability (CVE-2021-44228), referred to as the “Log4Shell” vulnerability. This issue is being treated with the highest priority by our product Security and Engineering teams.

TIBCO is now posting a daily update with the current status of our products at: https://www.tibco.com/support/notices/2021/12/apache-log4j-vulnerability-update. This page includes details about:
  • TIBCO products that have remediation documentation available
  • TIBCO Products that have hotfixes or service packs available
  • TIBCO products whose current, standard supported versions either do not use Apache Log4J or are not on an affected version of Log4J
  • Any needed clarifications from prior updates
Products not listed on this page are still under investigation. This page will be updated regularly as more information becomes available, typically by evening Pacific Time. If you have any questions not addressed by the above page and published documentation, please contact TIBCO Support.

Issue/Introduction

Apache Log4J Vulnerability (CVE-2021-44228) and Impact to TIBCO Products and Services

Environment

ALL