[
https://issues.apache.org/jira/browse/ZOOKEEPER-4894?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Chris Nauroth resolved ZOOKEEPER-4894.
--------------------------------------
Assignee: Chris Nauroth
Resolution: Duplicate
> Update logback-core-1.2.13.jar to fix CVE-2024-12798
> ----------------------------------------------------
>
> Key: ZOOKEEPER-4894
> URL: https://issues.apache.org/jira/browse/ZOOKEEPER-4894
> Project: ZooKeeper
> Issue Type: Bug
> Affects Versions: 3.9.3
> Reporter: Manisha
> Assignee: Chris Nauroth
> Priority: Major
>
> zookeeper v3.9.3 has security vulnerability for logback-core-1.2.13.jar due
> to CVE-2024-12798 Awaiting analysis:
> [https://nvd.nist.gov/vuln/detail/CVE-2024-12798]
> {*}Fix Required{*}:
> upgrade to *logback-core:1.3.15* in latest zookeeper
--
This message was sent by Atlassian Jira
(v8.20.10#820010)