Skip to main content

Is the current Apache issue a concern with the Proclaim setup?

A
Written by Antoine Larsen
Updated over 3 weeks ago

We're aware of a vulnerability in the Apache Log4j functionality. To find out what you need to do, check the guidance below.

OpenEdge

If you're using OpenEdge 11.7.11, you may have an issue that requires immediate mitigation in regards to:

  • 11.7.11 Classic REST Adapter

  • 11.7.11 import-export Utility (configutil)

We're unaware of any of anyone using OpenEdge version 11.7.11 of OpenEdge however, if required, you caninstall the latest update.

Proclaim BI

If you use Proclaim BI, you need to be aware of the update regardingLog4j Vulnerability and Pan Intelligence.

Apache Tomcat

Apache Tomcat doesn't use Log4j by default, we don't enable this feature for use with any Proclaim portals/web services. If your in-house IT teams use Apache Tomcat for any other purposes, they need to check if they've enabled the feature then apply any required fixes to mitigate the vulnerability.

We advise updating Apache Tomcat 8.5.72 to ensure that they're up to date with current security fixes for the platform. We can supply instructions for updating Apache Tomcat from any previous 8.5 version to 8.5.72 or, if you'd prefer, we can arrange for our Professional Services Department to contact you regarding making arrangements to do this for you.

Did this answer your question?