AIX Open Source

AIX Open Source

Share your experiences and connect with fellow developers to discover how to build and manage open source software for the AIX operating system

 View Only
Expand all | Collapse all

Vulnerability in Apache Log4j is affected in httpd/apache version in AIX Toolbox

  • 1.  Vulnerability in Apache Log4j is affected in httpd/apache version in AIX Toolbox

    Posted Thu December 16, 2021 05:27 AM
    Edited by Ayappan P Thu December 16, 2021 08:37 AM
    Hello Group. 

    Need to know is the httpd/apache version installed from AIX toolbox of Linux application is affected with Apache Log4j vulnerability. 

    Below are version running in our environment.
    We want to know if its affected or not ? How to check our version is impacted ?
    If yes how to fix that vulnerability ? 

    installed apache version details below. Kindly help on this urgently
    #/opt/freeware/sbin/apachectl -v
    Server version: Apache/2.4.18 (Unix)
    Server built: May 11 2016 06:37:40
    #rpm -qa | grep -i http
    httpd-2.4.18-1.ppc
    #

    ------------------------------
    Jeyaseelan Y
    ------------------------------


  • 2.  RE: Vulnerability in Apache Log4j is affected in httpd/apache version in AIX Toolbox

    Posted Thu December 16, 2021 08:41 AM

    Apache Log4j is a java-based logging utility and it has nothing to do with Apache httpd.



    ------------------------------
    Ayappan P
    ------------------------------



  • 3.  RE: Vulnerability in Apache Log4j is affected in httpd/apache version in AIX Toolbox

    Posted Thu December 16, 2021 08:51 AM

    Hello Ayappan,

     

    Thanks for this quick update.

     

    Thanks & Regards,

     

    Jey

    _____________________________

    Jeyaseelan Yesudason

    AIX  Administrator

    Capgemini India | Mumbai

    No: +91-9665096477/ 9820361966