<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>Question Re: Is SQL Anywhere affected by Apache Log4j vulnerability? in Technology Q&amp;A</title>
    <link>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830340#M4861183</link>
    <description>&lt;P&gt;SQL Anywhere 17 is not affected by this vulnerability.  &lt;/P&gt;</description>
    <pubDate>Mon, 13 Dec 2021 09:16:17 GMT</pubDate>
    <dc:creator>chris_keating</dc:creator>
    <dc:date>2021-12-13T09:16:17Z</dc:date>
    <item>
      <title>Is SQL Anywhere affected by Apache Log4j vulnerability?</title>
      <link>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaq-p/13830339</link>
      <description>&lt;P&gt;&lt;A href="https://www.pcmag.com/news/countless-serves-are-vulnerable-to-apache-log4j-zero-day-exploit" target="_blank"&gt;Countless Servers Are Vulnerable to Apache Log4j Zero-Day Exploit&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 11 Dec 2021 10:00:56 GMT</pubDate>
      <guid>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaq-p/13830339</guid>
      <dc:creator>Breck_Carter</dc:creator>
      <dc:date>2021-12-11T10:00:56Z</dc:date>
    </item>
    <item>
      <title>Re: Is SQL Anywhere affected by Apache Log4j vulnerability?</title>
      <link>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830341#M4861184</link>
      <description>&lt;P&gt;&lt;A href="https://infocenter.sybase.com/help/index.jsp?topic=/com.sybase.help.sqlanywhere.12.0.1/sachanges/newinnsbruck-sectc-3789111.html"&gt;https://infocenter.sybase.com/help/index.jsp?topic=/com.sybase.help.sqlanywhere.12.0.1/sachanges/newinnsbruck-sectc-3789111.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;MobiLink server no longer requires log4j.jar The log4j.jar file is no longer required by the MobiLink server and is no longer deployed with the MobiLink server. If you require log4j.jar you must install your own version of the jar and put it in the classpath.&lt;/P&gt;
&lt;P&gt;My blind guess - no. But you can check if your server still uses log4j.jar as a dependency.&lt;/P&gt;</description>
      <pubDate>Sat, 11 Dec 2021 13:27:37 GMT</pubDate>
      <guid>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830341#M4861184</guid>
      <dc:creator>Vlad</dc:creator>
      <dc:date>2021-12-11T13:27:37Z</dc:date>
    </item>
    <item>
      <title>Re: Is SQL Anywhere affected by Apache Log4j vulnerability?</title>
      <link>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830342#M4861185</link>
      <description>&lt;P&gt;Thanks... it doesn't appear to ship with SA16 or SA17, but it's a different story with ASE 16&lt;/P&gt;</description>
      <pubDate>Sat, 11 Dec 2021 13:37:40 GMT</pubDate>
      <guid>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830342#M4861185</guid>
      <dc:creator>Breck_Carter</dc:creator>
      <dc:date>2021-12-11T13:37:40Z</dc:date>
    </item>
    <item>
      <title>Re: Is SQL Anywhere affected by Apache Log4j vulnerability?</title>
      <link>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830340#M4861183</link>
      <description>&lt;P&gt;SQL Anywhere 17 is not affected by this vulnerability.  &lt;/P&gt;</description>
      <pubDate>Mon, 13 Dec 2021 09:16:17 GMT</pubDate>
      <guid>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830340#M4861183</guid>
      <dc:creator>chris_keating</dc:creator>
      <dc:date>2021-12-13T09:16:17Z</dc:date>
    </item>
    <item>
      <title>Re: Is SQL Anywhere affected by Apache Log4j vulnerability?</title>
      <link>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830343#M4861186</link>
      <description>&lt;P&gt;What about v16? (It's EOL'ed, I'm aware...)&lt;/P&gt;</description>
      <pubDate>Mon, 13 Dec 2021 09:38:03 GMT</pubDate>
      <guid>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830343#M4861186</guid>
      <dc:creator>VolkerBarth</dc:creator>
      <dc:date>2021-12-13T09:38:03Z</dc:date>
    </item>
    <item>
      <title>Re: Is SQL Anywhere affected by Apache Log4j vulnerability?</title>
      <link>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830344#M4861187</link>
      <description>&lt;P&gt;The SAP note ("3130849 - CVE-2021-44228 - RCE 0-day exploit found in log4j - SQL Anywhere") states that:
"...
Note that versions of SQL Anywhere older than 17.0 are not being maintained. If this CVE is a concern, you should upgrade to SQL Anywhere 17.0."&lt;/P&gt;
&lt;P&gt;Can you please tell me if there is any information about "zero-day/Log4j2"-vulnerability for SQL Anywhere 16.0.0 and SQL Anywhere 12.0.1?&lt;/P&gt;</description>
      <pubDate>Fri, 29 Apr 2022 05:04:40 GMT</pubDate>
      <guid>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830344#M4861187</guid>
      <dc:creator>former_SQLA_member326303</dc:creator>
      <dc:date>2022-04-29T05:04:40Z</dc:date>
    </item>
    <item>
      <title>Re: Is SQL Anywhere affected by Apache Log4j vulnerability?</title>
      <link>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830345#M4861188</link>
      <description>&lt;P&gt;AFAIK log4j.jar didn't ship with SQL Anywhere after version 11.&lt;/P&gt;</description>
      <pubDate>Sat, 30 Apr 2022 10:07:44 GMT</pubDate>
      <guid>https://community.sap.com/t5/technology-q-a/is-sql-anywhere-affected-by-apache-log4j-vulnerability/qaa-p/13830345#M4861188</guid>
      <dc:creator>Breck_Carter</dc:creator>
      <dc:date>2022-04-30T10:07:44Z</dc:date>
    </item>
  </channel>
</rss>

