Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Is this library is vulnerable via jndilookup mechanism as in log4j 2.x? #230

Closed
dineshr93 opened this issue Dec 15, 2021 · 1 comment
Closed

Comments

@dineshr93
Copy link

Hello

From http://logback.qos.ch/news.html they have made some changes in response to vulnerabilities present in LOG4j
image

I'd like to know if this lib is free of such vulnerabilities as well officially.

Thanks.

@tony19
Copy link
Owner

tony19 commented Dec 15, 2021

logback-android is not impacted by this vulnerability because it has never supported JNDI.

@tony19 tony19 closed this as completed Dec 15, 2021
@tony19 tony19 pinned this issue Jan 13, 2022
@github-actions github-actions bot locked and limited conversation to collaborators Nov 7, 2022
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants