dunno.... but since it's part of rhel you could check out
https://access.redhat.com/security/cve/cve-2021-44228


Op ma 13 dec. 2021 om 07:36 schreef GAURAV Pande via FreeIPA-users <freeipa-users@lists.fedorahosted.org>:
Below are the log4J jar i can see on my server where freeIPA 4.6.8 is being installed. Are these related to freeIPA ?

sudo find / -xdev -type f -name '*log4j*.jar'

/usr/share/java/log4j.jar
/usr/share/java/slf4j/log4j-over-slf4j.jar
/usr/share/java/slf4j/slf4j-log4j12.jar
/opt/minion/system/org/ops4j/pax/logging/pax-logging-log4j2/1.10.2/pax-logging-log4j2-1.10.2.jar
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-leave@lists.fedorahosted.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org
Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure