<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>article CVE-2021-44832 : Handling the log4shell vulnerability for Visibility 7.3.0.4 in Official Support Articles</title>
    <link>https://community.qlik.com/t5/Official-Support-Articles/CVE-2021-44832-Handling-the-log4shell-vulnerability-for/ta-p/1877884</link>
    <description>&lt;P style="box-sizing: border-box; outline: none; margin: 0px 0px 15px; color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"&gt;Qlik is providing these mitigation steps as a temporary measure. A patch will be provided and linked here; customers are advised to move to the patch as soon as it is available.&lt;/P&gt;
&lt;H4 id="toc-hId--509179570" style="box-sizing: border-box; outline: none; font-family: source_sans_proregular, Arial, sans-serif; font-weight: normal; line-height: 1.2; color: #54565a; margin: 0px; font-size: 20px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;Environment:&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;UL style="box-sizing: border-box; outline: none; margin-top: 0px; margin-bottom: 13.5px; list-style: outside; padding-left: 2.5em; clear: left; color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"&gt;
&lt;LI style="box-sizing: border-box; outline: none;"&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;&lt;LI-PRODUCT title="Qlik Visibility" id="qlikVisibility"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/FONT&gt; 7.3.0.4&lt;/LI&gt;
&lt;/UL&gt;
&lt;H4 style="box-sizing: border-box; outline: none; font-family: source_sans_proregular, Arial, sans-serif; font-weight: normal; line-height: 1.2; color: #54565a; margin: 0px; font-size: 20px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"&gt;&amp;nbsp;&lt;/H4&gt;
&lt;H4 id="toc-hId-170878800" style="box-sizing: border-box; outline: none; font-family: source_sans_proregular, Arial, sans-serif; font-weight: normal; line-height: 1.2; color: #54565a; margin: 0px; font-size: 20px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;Mitigation - Visibility 7.3&lt;BR /&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;&lt;A title="Download log4j 2.3.2" href="https://dlcdn.apache.org/logging/log4j/2.3.2/apache-log4j-2.3.2-bin.tar.gz" target="_blank" rel="noopener"&gt;Download log4j 2.3.2&lt;/A&gt; and extract it to temporary folder "&lt;FONT face="courier new,courier"&gt;PATH_TO_LOG4J_2_3_2&lt;/FONT&gt;"&lt;BR /&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;FONT face="courier new,courier"&gt;cd $VISIBILITY_HOME/java/lib/default&lt;/FONT&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;&lt;FONT face="courier new,courier"&gt;rm log4j-1.2-api-2.3.jar log4j-api-2.3.jar log4j-core-2.3.jar&lt;/FONT&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;(it's better to move the jars to a backup folder rather than remove them)&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;Copy the jars from the temporary folder&lt;BR /&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/STRONG&gt;&lt;LI-CODE lang="markup"&gt;cp ~/PATH_TO_LOG4J_2_3_2/log4j-api-2.3.2.jar .
cp ~/PATH_TO_LOG4J_2_3_2/log4j-core-2.3.2.jar .
cp ~/PATH_TO_LOG4J_2_3_2/log4j-1.2-api-2.3.2.jar .&lt;/LI-CODE&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;Restart Visibility hdpcollector and hdpcataloger components&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;No other components are affected.&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;&lt;LI-PRODUCT title="Qlik Visibility" id="qlikVisibility"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 10 Jan 2022 07:58:56 GMT</pubDate>
    <dc:creator>john_wang</dc:creator>
    <dc:date>2022-01-10T07:58:56Z</dc:date>
    <item>
      <title>CVE-2021-44832 : Handling the log4shell vulnerability for Visibility 7.3.0.4</title>
      <link>https://community.qlik.com/t5/Official-Support-Articles/CVE-2021-44832-Handling-the-log4shell-vulnerability-for/ta-p/1877884</link>
      <description>&lt;P style="box-sizing: border-box; outline: none; margin: 0px 0px 15px; color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"&gt;Qlik is providing these mitigation steps as a temporary measure. A patch will be provided and linked here; customers are advised to move to the patch as soon as it is available.&lt;/P&gt;
&lt;H4 id="toc-hId--509179570" style="box-sizing: border-box; outline: none; font-family: source_sans_proregular, Arial, sans-serif; font-weight: normal; line-height: 1.2; color: #54565a; margin: 0px; font-size: 20px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;Environment:&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;UL style="box-sizing: border-box; outline: none; margin-top: 0px; margin-bottom: 13.5px; list-style: outside; padding-left: 2.5em; clear: left; color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"&gt;
&lt;LI style="box-sizing: border-box; outline: none;"&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;&lt;LI-PRODUCT title="Qlik Visibility" id="qlikVisibility"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/FONT&gt; 7.3.0.4&lt;/LI&gt;
&lt;/UL&gt;
&lt;H4 style="box-sizing: border-box; outline: none; font-family: source_sans_proregular, Arial, sans-serif; font-weight: normal; line-height: 1.2; color: #54565a; margin: 0px; font-size: 20px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"&gt;&amp;nbsp;&lt;/H4&gt;
&lt;H4 id="toc-hId-170878800" style="box-sizing: border-box; outline: none; font-family: source_sans_proregular, Arial, sans-serif; font-weight: normal; line-height: 1.2; color: #54565a; margin: 0px; font-size: 20px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;Mitigation - Visibility 7.3&lt;BR /&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;&lt;A title="Download log4j 2.3.2" href="https://dlcdn.apache.org/logging/log4j/2.3.2/apache-log4j-2.3.2-bin.tar.gz" target="_blank" rel="noopener"&gt;Download log4j 2.3.2&lt;/A&gt; and extract it to temporary folder "&lt;FONT face="courier new,courier"&gt;PATH_TO_LOG4J_2_3_2&lt;/FONT&gt;"&lt;BR /&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;FONT face="courier new,courier"&gt;cd $VISIBILITY_HOME/java/lib/default&lt;/FONT&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;&lt;FONT face="courier new,courier"&gt;rm log4j-1.2-api-2.3.jar log4j-api-2.3.jar log4j-core-2.3.jar&lt;/FONT&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;(it's better to move the jars to a backup folder rather than remove them)&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;Copy the jars from the temporary folder&lt;BR /&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/STRONG&gt;&lt;LI-CODE lang="markup"&gt;cp ~/PATH_TO_LOG4J_2_3_2/log4j-api-2.3.2.jar .
cp ~/PATH_TO_LOG4J_2_3_2/log4j-core-2.3.2.jar .
cp ~/PATH_TO_LOG4J_2_3_2/log4j-1.2-api-2.3.2.jar .&lt;/LI-CODE&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;Restart Visibility hdpcollector and hdpcataloger components&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;No other components are affected.&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;FONT style="box-sizing: border-box; outline: none;" color="#339966"&gt;&lt;STRONG style="box-sizing: border-box; outline: none; font-weight: bold;"&gt;&lt;SPAN style="color: #54565a; font-family: source_sans_proregular, Arial, sans-serif; font-size: 16px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 300; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; display: inline !important; float: none;"&gt;&lt;LI-PRODUCT title="Qlik Visibility" id="qlikVisibility"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 10 Jan 2022 07:58:56 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Official-Support-Articles/CVE-2021-44832-Handling-the-log4shell-vulnerability-for/ta-p/1877884</guid>
      <dc:creator>john_wang</dc:creator>
      <dc:date>2022-01-10T07:58:56Z</dc:date>
    </item>
    <item>
      <title>Re: CVE-2021-44832 : Handling the log4shell vulnerability for Visibility 7.3.0.4</title>
      <link>https://community.qlik.com/t5/Official-Support-Articles/CVE-2021-44832-Handling-the-log4shell-vulnerability-for/tac-p/1927060#M6362</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Qlik Visibility - CVE-2021-44228: Visibility-Client.jar file vulnerability&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Looking for guidance on Security vulnerability noted:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;The version of Apache Log4j on the remote host is 2.x &amp;lt; 2.3.1 / 2.4 &amp;lt; 2.12.3 / 2.13 &amp;lt; 2.15.0. It is, therefore, affected by a remote code execution vulnerability in the JDNI parser due to improper log validation. An unauthenticated, remote attacker can exploit this to bypass authentication and execute arbitrary commands. Log4j 1.x, which reached its End of Life prior to 2016, comes with JMSAppender which will perform a JNDI lookup if enabled in Log4j's configuration file, hence customers should evaluate triggers in 1.x based on the risk that it is EOL and whether JNDI lookups are enabled. Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;The following paths are showing in our Security scan results:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Path:/opt/attunity/visibility/product/v7/java/lib/MapR/visibility-client.jar - Note: Installed version:2.3 and Fixed version:2.3.1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Path:/opt/attunity/visibility/product/v7/java/lib/CDH_5.10/visibility-client.jar - Note: Installed version:2.3 and Fixed version:2.3.1&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Please advise on guidance.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Vikki Turner&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 05 May 2022 18:55:47 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Official-Support-Articles/CVE-2021-44832-Handling-the-log4shell-vulnerability-for/tac-p/1927060#M6362</guid>
      <dc:creator>Vikki</dc:creator>
      <dc:date>2022-05-05T18:55:47Z</dc:date>
    </item>
    <item>
      <title>Re: CVE-2021-44832 : Handling the log4shell vulnerability for Visibility 7.3.0.4</title>
      <link>https://community.qlik.com/t5/Official-Support-Articles/CVE-2021-44832-Handling-the-log4shell-vulnerability-for/tac-p/1927061#M6363</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Qlik Visibility - Spring Framework vulnerability CVE-2022-22965&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Looking for guidance on Attunity Visibility software v7.3 impact for Spring Framework vulnerability CVE-2022-22965. PNC Security has requested remediation as per below:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Spring Framework contains a flaw in the CachedIntrospectionResults class in spring-beans/src/main/java/org/springframework/beans/CachedIntrospectionResults.java related to insecure introspection when using request parameter binding. This may allow a remote attacker to invoke arbitrary Java class methods and execute arbitrary code.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;SPAN&gt;I've found the reference in your support documentation for the subject CVE vulnerability but there is no mention of Qlik Visibility software. Would appreciate some help.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Using:&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Operating System: Linux&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Operating System Version: RHEL 7.9&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Product Release: V7.3&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Environment Type: Production&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;SPAN&gt;Thank you,&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Vikki Turner&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 05 May 2022 18:56:34 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Official-Support-Articles/CVE-2021-44832-Handling-the-log4shell-vulnerability-for/tac-p/1927061#M6363</guid>
      <dc:creator>Vikki</dc:creator>
      <dc:date>2022-05-05T18:56:34Z</dc:date>
    </item>
    <item>
      <title>Re: CVE-2021-44832 : Handling the log4shell vulnerability for Visibility 7.3.0.4</title>
      <link>https://community.qlik.com/t5/Official-Support-Articles/CVE-2021-44832-Handling-the-log4shell-vulnerability-for/tac-p/1928683#M6385</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/160304"&gt;@Vikki&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Visibility is a retired product and is no longer supported&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://community.qlik.com/t5/Support-Updates-Blog/Retirement-of-legacy-Attunity-products-on-January-31-2022/ba-p/1732910" target="_blank" rel="noopener"&gt;https://community.qlik.com/t5/Support-Updates-Blog/Retirement-of-legacy-Attunity-products-on-January...&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Swathi&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2022 15:11:39 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Official-Support-Articles/CVE-2021-44832-Handling-the-log4shell-vulnerability-for/tac-p/1928683#M6385</guid>
      <dc:creator>SwathiPulagam</dc:creator>
      <dc:date>2022-05-10T15:11:39Z</dc:date>
    </item>
  </channel>
</rss>

