I have recently read about the 0 day issue in Log4J. I work with a few applications, written with .NET, that use the log4net logging library, which is based on Log4j.
Does log4net have any similar security vulnerabilities as the CVE-2021-44228 vulnerability to log4j?
CodePudding user response:
Does log4net have any similar security vulnerabilities as the CVE-2021-44228 vulnerability to log4j?
I don't believe so. If they did, it would be a coincidence. I don't think they share code.
CodePudding user response:
It seems that this topic is discussed on stack exchange, so I will not copy the detail here but point you to this article: https://security.stackexchange.com/questions/257873/does-cve-2021-44228-impact-log4j-ports