Security Bulletin: Due to use of Apache Log4j, OmniFind Text Search Server for DB2 for i is vulnerable to arbitrary code execution (CVE-2021-4104)

There is a vulnerability in Apache Log4j (CVE-2021-4104) as described in the vulnerability details section. Apache Log4j v1 is used by OmniFind Text Search Server for DB2 for i for generating logs and diagnostic traces in some of its components. IBM has addressed the vulnerability in OmniFind Text Search Server for DB2 for i by removing Apache Log4j.

IBM i web services

Nowadays, web services have become an integral part of the IT world. They are used everywhere – even where you least expect it – and they make life a lot easier.

Join me next week for a ?fireside chat? about #OpenSource on #IBMi! I’ll probably talk about security, programming, scalability, community, and the intricate relationship between PASE, RPG, and Db2! Now, that’s HOT! Please join the discussion!

Join me next week for a ?fireside chat? about #OpenSource on #IBMi! I’ll probably talk about security, programming, scalability, community, and the intricate relationship between PASE, RPG, and Db2! Now, that’s HOT! Please join the discussion!centralparkdata.com/ichime-dates.h… pic.twitter.com/C15hzff6Cz

– Jesse Gorzinski (@IBMJesseG)18:07 – Mar 03, 2022

Let’s make these two events the best yet! @COMMONug @CommonIberia @Common_NL @CommonEurope @CommonFrance @commonsweden @common_polska @CommonDenmark #RegisterNow #IBMi #Db2fori #SQLcandoit

Let’s make these two events the best yet! @COMMONug @CommonIberia @Common_NL @CommonEurope @CommonFrance @commonsweden @common_polska @CommonDenmark #RegisterNow #IBMi #Db2fori #SQLcandoit twitter.com/steve_will_ibm…

– Scott Forstie (@Forstie_IBMi)17:17 – Mar 03, 2022Quoted Tweet:

Plan to attend @COMMONug #POWERUp2022 and @CommonEurope CEC2022 this spring! You’ll hear all about #IBMi Announcements of Really Cool Things!

– Steve Will (@Steve_Will_IBMi)12:30 – Mar 02, 2022

Verified by MonsterInsights