It was discovered that several deserialization issues existed within Apache Log4j. An attacker could possibly use these issues to enable the execution of arbitrary code. (CVE-2022-23302, CVE-2022-23305, CVE-2022-23307)
{ "availability": "Available with Ubuntu Pro with Legacy support add-on: https://ubuntu.com/pro", "binaries": [ { "binary_version": "1.2.17-4ubuntu3+esm2", "binary_name": "liblog4j1.2-java" }, { "binary_version": "1.2.17-4ubuntu3+esm2", "binary_name": "liblog4j1.2-java-doc" } ] }