Skip to content

Conversation

@cmaglie
Copy link
Member

@cmaglie cmaglie commented Dec 14, 2021

This release provides extra hardening for CVE-2021-44228

https://lists.apache.org/thread/d6v4r6nosxysyq9rvnr779336yf0woz4

Since we already started the release process for IDE 1.8.17, to avoid confusion we will bump the IDE version to 1.8.18.

@cmaglie cmaglie added the security Security fixes / bugs / improvements label Dec 14, 2021
@cmaglie cmaglie merged commit 6cf3a89 into arduino:master Dec 14, 2021
@cmaglie cmaglie deleted the log4j-2.16 branch December 14, 2021 13:26
@PaulStoffregen
Copy link
Contributor

@cmaglie - Have you seen CVE-2021-45105 and log4j 2.17?

https://logging.apache.org/log4j/2.x/security.html

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security Security fixes / bugs / improvements

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants