lagoon-images 21.12.0 #361
tobybellwood
announced in
Releases
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Security Advisories
This image release has been made to mitigate CVE-2021-44228, which covers Apache-log4j2
The mitigation included in all images that use Java (Solr, Elasticsearch and Logstash) is to add additional system properties to the JVM startup
log4j2.formatMsgNoLookups=true
If you inherit these images and set additional system properties via SOLR_OPTS, LS_JAVA_OPTS, or ES_JAVA_OPTS, please make sure to either include the additional mitigation above, or via the environment variables defined in the log4j notice.
For users of the (now deprecated for a few months) Solr 5 and Solr 6 images - there are no know mitigations, and there are unlikely to be. Please update your sites to Solr 7 ASAP.
New Images
Deprecated Images
Changes in this release
Package Updates
Full Changelog: 21.11.1...21.12.0
This discussion was created from the release lagoon-images 21.12.0.
Beta Was this translation helpful? Give feedback.
All reactions