CodeWarrior and the Apache Log4j CVE-2021-45046 vulnerability

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

CodeWarrior and the Apache Log4j CVE-2021-45046 vulnerability

CodeWarrior and the Apache Log4j CVE-2021-45046 vulnerability

A vulnerability in the Apache Log4j was identified in the article posted: CVE-2021-45046

NXP has performed an analysis of this vulnerability with regard to the CodeWarrior. Our conclusion is that the CodeWarrior (all versions) is NOT IMPACTED. Although the Log4j is used by CodeWarrior, the version used is 1.x and the vulnerability was introduced in version 2.x. We do not plan to upgrade the Log4j version at this time. Going forward, if we determine an upgrade of the Log4j is required for a future release of CodeWarrior, then this vulnerability will be addressed.

No ratings
Version history
Last update:
‎12-23-2021 01:24 PM
Updated by: