My Oracle Support Banner

CVE-2021-44228 and CVE-2021-45046 Advisory for Enterprise Manager Cloud Control Connectors (Doc ID 2829856.1)

Last updated on DECEMBER 23, 2021

Applies to:

Enterprise Manager for Miscellaneous Plug-ins - Version 13.4.0.0.0 to 13.5.0.0.0 [Release 13c]
Information in this document applies to any platform.

Purpose

The Apache Software Foundation has published a number of mitigation steps in response to the Log4j vulnerabilities CVE-2021-44228 and CVE-2021-45046. These mitigations are published here. The purpose of this document is to assist you in implementing the recommended Apache mitigations in Enterprise Manager Cloud Control Connectors and its underlying stack. This MOS Note will be updated to reflect the availability of patches from Oracle. Oracle recommends that you apply all necessary patches as soon as they are available to permanently address these vulnerabilities.

Scope

 This document applies to Enterprise Manager Cloud Control Connectors

● CA Service Desk
● HP Operations Manager UNIX
● SCOM 2007 R2
● SCOM
● IBM Netcool OMNIbus

 

Details

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Purpose
Scope
Details
 Details

My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.