stable

log4cxx-1.7.0-2.fc43

FEDORA-2026-31a8569c4b created by thofmann a month ago for Fedora 43

Update to log4cxx 1.7.0.

Fixes CVE-2026-40023: XMLLayout did not escape characters forbidden by the XML 1.0 specification, which could cause conforming XML parsers to reject the produced document, silently dropping log records.

No ABI-relevant changes; liblog4cxx SONAME (%{sover}) is unchanged.

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2026-31a8569c4b

This update has been submitted for testing by thofmann.

a month ago

This update's test gating status has been changed to 'ignored'.

a month ago

This update has been pushed to testing.

a month ago
karma

This update can be pushed to stable now if the maintainer wishes

a month ago

This update has been submitted for stable by thofmann.

3 weeks ago

This update has been pushed to stable.

3 weeks ago

Please log in to add feedback.

Metadata
Type
security
Severity
medium
Karma
1
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
disabled
Stable by Time
disabled
Dates
submitted
a month ago
in testing
a month ago
in stable
3 weeks ago
approved
a month ago
BZ#2457923 CVE-2026-40023 log4cxx: Apache Log4cxx: Log processing impairment due to unsanitized XML characters [fedora-all]
0
0

Automated Test Results