From 2f6c03b602c8eb4f31ba6e487365a79004fae79b Mon Sep 17 00:00:00 2001 From: Dan Timoney Date: Mon, 13 Dec 2021 15:59:55 -0500 Subject: [PATCH] Upgrade log4j to version 2.15.0 Update log4j version to address known vulnerability Issue-ID: CCSDK-3556 Signed-off-by: Dan Timoney Change-Id: Ie0840a7f45257092c93bd5dbb23d197a1de491b0 --- dependencies-bom/pom.xml | 4 ++-- odlparent/binding-parent/pom.xml | 5 ++++- odlparent/bundle-parent/pom.xml | 5 ++++- odlparent/feature-repo-parent/pom.xml | 5 ++++- odlparent/karaf4-parent/pom.xml | 5 ++++- odlparent/mdsal-it-parent/pom.xml | 5 ++++- odlparent/odlparent-lite/pom.xml | 5 ++++- odlparent/odlparent/pom.xml | 5 ++++- odlparent/setup/src/main/resources/pom-template.xml | 5 ++++- odlparent/single-feature-parent/pom.xml | 5 ++++- oparent/pom.xml | 2 ++ springboot/spring-boot-setup/src/main/resources/pom-template.xml | 2 ++ springboot/springboot1/pom.xml | 2 ++ springboot/springboot2/pom.xml | 2 ++ standalone/pom.xml | 4 +++- 15 files changed, 49 insertions(+), 12 deletions(-) diff --git a/dependencies-bom/pom.xml b/dependencies-bom/pom.xml index 728c60fd..ca1b475d 100644 --- a/dependencies-bom/pom.xml +++ b/dependencies-bom/pom.xml @@ -211,12 +211,12 @@ org.apache.logging.log4j log4j-slf4j-impl - 2.11.2 + 2.15.0 org.apache.logging.log4j log4j-core - 2.14.1 + 2.15.0 org.apache.tomcat diff --git a/odlparent/binding-parent/pom.xml b/odlparent/binding-parent/pom.xml index 30a4638d..f9e9812b 100644 --- a/odlparent/binding-parent/pom.xml +++ b/odlparent/binding-parent/pom.xml @@ -176,11 +176,14 @@ 10.14.2.0 1.0.0 1.21.1 + 9.4.40.v20210413 + 2.15.0 + 2.15.0 2.7.3 2.4.0 6.14.3 9.0.52 - 9.4.40.v20210413 + true direct-dependencies.txt diff --git a/odlparent/bundle-parent/pom.xml b/odlparent/bundle-parent/pom.xml index a55e5f21..80eef04d 100644 --- a/odlparent/bundle-parent/pom.xml +++ b/odlparent/bundle-parent/pom.xml @@ -176,11 +176,14 @@ 10.14.2.0 1.0.0 1.21.1 + 9.4.40.v20210413 + 2.15.0 + 2.15.0 2.7.3 2.4.0 6.14.3 9.0.52 - 9.4.40.v20210413 + true direct-dependencies.txt diff --git a/odlparent/feature-repo-parent/pom.xml b/odlparent/feature-repo-parent/pom.xml index 21acb348..6adf57cd 100644 --- a/odlparent/feature-repo-parent/pom.xml +++ b/odlparent/feature-repo-parent/pom.xml @@ -176,11 +176,14 @@ 10.14.2.0 1.0.0 1.21.1 + 9.4.40.v20210413 + 2.15.0 + 2.15.0 2.7.3 2.4.0 6.14.3 9.0.52 - 9.4.40.v20210413 + true direct-dependencies.txt diff --git a/odlparent/karaf4-parent/pom.xml b/odlparent/karaf4-parent/pom.xml index 0540b644..909d3439 100644 --- a/odlparent/karaf4-parent/pom.xml +++ b/odlparent/karaf4-parent/pom.xml @@ -176,11 +176,14 @@ 10.14.2.0 1.0.0 1.21.1 + 9.4.40.v20210413 + 2.15.0 + 2.15.0 2.7.3 2.4.0 6.14.3 9.0.52 - 9.4.40.v20210413 + true direct-dependencies.txt diff --git a/odlparent/mdsal-it-parent/pom.xml b/odlparent/mdsal-it-parent/pom.xml index 1c16deec..ff3dbd81 100644 --- a/odlparent/mdsal-it-parent/pom.xml +++ b/odlparent/mdsal-it-parent/pom.xml @@ -176,11 +176,14 @@ 10.14.2.0 1.0.0 1.21.1 + 9.4.40.v20210413 + 2.15.0 + 2.15.0 2.7.3 2.4.0 6.14.3 9.0.52 - 9.4.40.v20210413 + true direct-dependencies.txt diff --git a/odlparent/odlparent-lite/pom.xml b/odlparent/odlparent-lite/pom.xml index b8d7a7c8..2e06a05e 100644 --- a/odlparent/odlparent-lite/pom.xml +++ b/odlparent/odlparent-lite/pom.xml @@ -176,11 +176,14 @@ 10.14.2.0 1.0.0 1.21.1 + 9.4.40.v20210413 + 2.15.0 + 2.15.0 2.7.3 2.4.0 6.14.3 9.0.52 - 9.4.40.v20210413 + true direct-dependencies.txt diff --git a/odlparent/odlparent/pom.xml b/odlparent/odlparent/pom.xml index f943dfc4..b6a21df3 100644 --- a/odlparent/odlparent/pom.xml +++ b/odlparent/odlparent/pom.xml @@ -176,11 +176,14 @@ 10.14.2.0 1.0.0 1.21.1 + 9.4.40.v20210413 + 2.15.0 + 2.15.0 2.7.3 2.4.0 6.14.3 9.0.52 - 9.4.40.v20210413 + true direct-dependencies.txt diff --git a/odlparent/setup/src/main/resources/pom-template.xml b/odlparent/setup/src/main/resources/pom-template.xml index cd5b2594..acd39427 100755 --- a/odlparent/setup/src/main/resources/pom-template.xml +++ b/odlparent/setup/src/main/resources/pom-template.xml @@ -176,11 +176,14 @@ 10.14.2.0 1.0.0 1.21.1 + 9.4.40.v20210413 + 2.15.0 + 2.15.0 2.7.3 2.4.0 6.14.3 9.0.52 - 9.4.40.v20210413 + true direct-dependencies.txt diff --git a/odlparent/single-feature-parent/pom.xml b/odlparent/single-feature-parent/pom.xml index 810ca4f0..25d54796 100644 --- a/odlparent/single-feature-parent/pom.xml +++ b/odlparent/single-feature-parent/pom.xml @@ -176,11 +176,14 @@ 10.14.2.0 1.0.0 1.21.1 + 9.4.40.v20210413 + 2.15.0 + 2.15.0 2.7.3 2.4.0 6.14.3 9.0.52 - 9.4.40.v20210413 + true direct-dependencies.txt diff --git a/oparent/pom.xml b/oparent/pom.xml index f300f9cd..28069366 100755 --- a/oparent/pom.xml +++ b/oparent/pom.xml @@ -77,6 +77,8 @@ ${ccsdk.sli.version} 1.1.1-SNAPSHOT + 2.15.0 + 2.15.0 2.7.3 2.10.5 2.3 diff --git a/springboot/spring-boot-setup/src/main/resources/pom-template.xml b/springboot/spring-boot-setup/src/main/resources/pom-template.xml index 0271683d..25b52763 100644 --- a/springboot/spring-boot-setup/src/main/resources/pom-template.xml +++ b/springboot/spring-boot-setup/src/main/resources/pom-template.xml @@ -130,6 +130,8 @@ ${springboot.jersey.version} ${springboot.jersey.version} 1.3.8 + 2.15.0 + 2.15.0 1.2.3 2.7.3 2.4.0 diff --git a/springboot/springboot1/pom.xml b/springboot/springboot1/pom.xml index 669736eb..81ae5726 100644 --- a/springboot/springboot1/pom.xml +++ b/springboot/springboot1/pom.xml @@ -130,6 +130,8 @@ 2.30.1 2.30.1 1.3.8 + 2.15.0 + 2.15.0 1.2.3 2.7.3 2.4.0 diff --git a/springboot/springboot2/pom.xml b/springboot/springboot2/pom.xml index 4451ccf2..0915673c 100644 --- a/springboot/springboot2/pom.xml +++ b/springboot/springboot2/pom.xml @@ -130,6 +130,8 @@ 2.30.1 2.30.1 1.3.8 + 2.15.0 + 2.15.0 1.2.3 2.7.3 2.4.0 diff --git a/standalone/pom.xml b/standalone/pom.xml index e0faa1ec..da8c76eb 100755 --- a/standalone/pom.xml +++ b/standalone/pom.xml @@ -65,6 +65,8 @@ 2.5.0 true + 2.15.0 + 2.15.0 2.7.2 2.12.4 2.3 @@ -102,7 +104,7 @@ org.apache.logging.log4j log4j-slf4j-impl - 2.11.2 + 2.15.0 com.fasterxml.jackson.core -- 2.16.6