google / graphicsfuzz

A testing framework for automatically finding and simplifying bugs in graphics shader compilers.
Apache License 2.0
561 stars 117 forks source link

Update log4j to 2.17.1 to address CVE-2021-44832. #1176

Closed jeremie1112 closed 2 years ago

jeremie1112 commented 2 years ago

Update log4j to 2.17.1 to address CVE-2021-44832. https://nvd.nist.gov/vuln/detail/CVE-2021-44832

hevrard commented 2 years ago

Thanks for this! I'm only seeing it now, I've applied a similar fix in the meantime: https://github.com/google/graphicsfuzz/commit/b1d2319dc4464d364e3030bad7169bf17e5dfae4