diff --git a/cve-2021-44225.md b/cve-2021-44225.md new file mode 100644 index 0000000..4953ac5 --- /dev/null +++ b/cve-2021-44225.md @@ -0,0 +1,41 @@ +# Zero-Day CVE-2021-44225 (Log4J Java Library) +Details: [https://cubetiq.atlassian.net/browse/CERT-1](https://cubetiq.atlassian.net/browse/CERT-1) + +***Resolved*** +```text +Upgrade log4j to version: 2.15.0 +``` + +### Spring Boot +##### Gradle Kotlin DSL (build.gradle.kts) (Gradle Multiple Modules) +```kts +allprojects { + // Fixed Zero-Day CVE-2021-44225: https://cubetiq.atlassian.net/browse/CERT-1 + ext["log4j2.version"] = "2.15.0" +} +``` + +##### Gradle Kotlin DSL (build.gradle.kts) (Gradle Single Module) +```kts +implementation(platform("org.apache.logging.log4j:log4j-bom:2.15.0")) +``` +***Or*** +```kts +ext["log4j2.version"] = "2.15.0" +``` + +##### Gradle DSL (build.gradle) (Gradle Multiple Modules) +```gradle +allprojects { + ext { + // Fixed Zero-Day CVE-2021-44225: https://cubetiq.atlassian.net/browse/CERT-1 + set('log4j2.version', '2.15.0') + } +} +``` +***Or*** +```kts +ext { + set('log4j2.version', '2.15.0') +} +```