You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@logging.apache.org by ma...@apache.org on 2021/12/18 23:46:34 UTC

[logging-log4j2] branch release-2.x updated: Update credits

This is an automated email from the ASF dual-hosted git repository.

mattsicker pushed a commit to branch release-2.x
in repository https://gitbox.apache.org/repos/asf/logging-log4j2.git


The following commit(s) were added to refs/heads/release-2.x by this push:
     new 1a57dd8  Update credits
1a57dd8 is described below

commit 1a57dd8e7c27239f9c9826c27f718d82b6bd3233
Author: Matt Sicker <bo...@gmail.com>
AuthorDate: Sat Dec 18 17:46:18 2021 -0600

    Update credits
---
 src/site/markdown/security.md | 4 ++--
 1 file changed, 2 insertions(+), 2 deletions(-)

diff --git a/src/site/markdown/security.md b/src/site/markdown/security.md
index b047964..fc50d24 100644
--- a/src/site/markdown/security.md
+++ b/src/site/markdown/security.md
@@ -93,7 +93,7 @@ Other projects like Log4net and Log4cxx are not impacted by this.
 The Log4j team will continue to actively update this page as more information becomes known.
 
 ### Credit
-This issue was discovered by Hideki Okamoto of Akamai Technologies and another anonymous vulnerability researcher.
+Independently discovered by Hideki Okamoto of Akamai Technologies, Guy Lederfein of Trend Micro Research working with Trend Micro’s Zero Day Initiative, and another anonymous vulnerability researcher.
 
 ### References
 - [CVE-2021-45105](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-45105)
@@ -191,7 +191,7 @@ The Log4j team will continue to actively update this page as more information be
 ### Credit
 This issue was discovered by Kai Mindermann of iC Consult and separately by 4ra1n.
 
-Additional vulnerability details discovered independently by Ash Fox of Google, Anthony Weems of Praetorian, and RyotaK
+Additional vulnerability details discovered independently by Ash Fox of Google, Alvaro Muñoz and Tony Torralba from GitHub, Anthony Weems of Praetorian, and RyotaK (@ryotkak).
 
 ### References
 - [CVE-2021-45046](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-45046)