Re: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ classic version upgrade

2024-02-27 Thread Matt Pavlovich
This looks like you are referencing a log handler that is not shipped as part of the Apache ActiveMQ distribution. Possibly a Fuse or Red Hat A-MQ build? That part of the ActiveMQ configuration needs to be removed and/or modified. Thanks, Matt Pavlovich > On Feb 1, 2024, at 5:03 PM, Vishnu Midd

RE: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ classic version upgrade

2024-02-01 Thread Vishnu Middela
(XBeanQNameHelper.java:75) Thanks & Regards Vishnu Middela -Original Message- From: Vishnu Middela Sent: Wednesday, January 31, 2024 9:13 AM To: users@activemq.apache.org Subject: RE: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ classic version upgrade Hi, Current Java ver

RE: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ classic version upgrade

2024-01-31 Thread Paul McCulloch
3 PM > To: users@activemq.apache.org > Subject: RE: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ > classic version upgrade > > IFS Security Notice - External Email - Don't be too quick to click! > Think carefully before clicking on links or attachments. Neve

RE: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ classic version upgrade

2024-01-31 Thread Vishnu Middela
nvironment (build 1.8.0_392-b08) OpenJDK 64-Bit Server VM (build 25.392-b08, mixed mode) Thanks & Regards Vishnu Middela -Original Message- From: Vishnu Middela Sent: Tuesday, January 30, 2024 7:15 AM To: users@activemq.apache.org Subject: RE: Apache Log4j 1.x Multiple Vulnerabi

RE: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ classic version upgrade

2024-01-30 Thread Vishnu Middela
-5.18.3/data 6. Start ActiveMQ [bodi@aoedw-e-app3009 bin]$ ./activemq start Thanks & Regards Vishnu Middela -Original Message- From: Justin Bertram Sent: Monday, January 29, 2024 9:18 PM To: users@activemq.apache.org Subject: Re: Apache Log4j 1.x Multiple Vulnerabilities--Ap

Re: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ classic version upgrade

2024-01-29 Thread Justin Bertram
& Regards > > Vishnu Middela > > > > -Original Message- > From: Justin Bertram > Sent: Monday, January 29, 2024 7:47 PM > To: users@activemq.apache.org > Subject: Re: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ > classic version up

RE: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ classic version upgrade

2024-01-29 Thread Vishnu Middela
apache.org<mailto:users@activemq.apache.org> Subject: Re: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ classic version upgrade CAUTION - EXTERNAL: Your output doesn't indicate any problems. Everything looks normal as far as I can tell. This is the same output

Re: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ classic version upgrade

2024-01-29 Thread Justin Bertram
Message- > From: Justin Bertram > Sent: Tuesday, January 16, 2024 1:43 PM > To: users@activemq.apache.org > Subject: Re: Apache Log4j 1.x Multiple Vulnerabilities > > CAUTION - EXTERNAL: > > > ActiveMQ Classic 5.15.8 was released in early 2019, almost 5 years ago

RE: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ classic version upgrade

2024-01-29 Thread Vishnu Middela
activemq.pid' (pid '18302') Thanks & Regards Vishnu Middela -Original Message- From: Justin Bertram Sent: Tuesday, January 16, 2024 1:43 PM To: users@activemq.apache.org Subject: Re: Apache Log4j 1.x Multiple Vulnerabilities CAUTION - EXTERNAL: ActiveMQ Classic 5.15.

RE: Apache Log4j 1.x Multiple Vulnerabilities--Apache ActiveMQ classic version upgrade

2024-01-24 Thread Vishnu Middela
Hi, Any update on below request is appreciated..thanks Thanks & Regards Vishnu Middela -Original Message- From: Vishnu Middela Sent: Tuesday, January 23, 2024 2:23 PM To: users@activemq.apache.org Subject: RE: Apache Log4j 1.x Multiple Vulnerabilities Hi, If I

RE: Apache Log4j 1.x Multiple Vulnerabilities

2024-01-23 Thread Vishnu Middela
tram Sent: Tuesday, January 16, 2024 1:43 PM To: users@activemq.apache.org Subject: Re: Apache Log4j 1.x Multiple Vulnerabilities CAUTION - EXTERNAL: ActiveMQ Classic 5.15.8 was released in early 2019, almost 5 years ago now. Since then, in part to deal with security issues, the logging implementa

RE: Apache Log4j 1.x Multiple Vulnerabilities

2024-01-16 Thread Vishnu Middela
Thanks...this helps.. Thanks & Regards Vishnu Middela -Original Message- From: Justin Bertram Sent: Tuesday, January 16, 2024 1:43 PM To: users@activemq.apache.org Subject: Re: Apache Log4j 1.x Multiple Vulnerabilities CAUTION - EXTERNAL: ActiveMQ Classic 5.15.8 was release

Re: Apache Log4j 1.x Multiple Vulnerabilities

2024-01-16 Thread Justin Bertram
ActiveMQ Classic 5.15.8 was released in early 2019, almost 5 years ago now. Since then, in part to deal with security issues, the logging implementation changed to Reload4j and then eventually to Log4j 2. The best way you can mitigate security issues is to stay up-to-date. I strongly recommend you