RLSA-2022:0290 --- uom-parentID: oval:org.secpod.oval:def:4501099 | Date: (C)2023-06-19 (M)2023-12-26 |
Class: PATCH | Family: unix |
Parfait is a Java performance monitoring library that collects metrics and exposes them through a variety of outputs. It provides APIs for extracting performance metrics from the JVM and other sources. It interfaces to Performance Co-Pilot using the Memory Mapped Value machinery for extremely lightweight instrumentation. Security Fix: * log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender * log4j: Unsafe deserialization flaw in Chainsaw log viewer * log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender * log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.
Product: |
uom-parent |
uom-lib |
si-units |
uom-se |
uom-systems |
unit-api |
parfait |
pcp-parfait-agent |