is BBMap/Qualimap affected by log4j vulnerability
2
0
Entering edit mode
2.4 years ago
tamu.anand ▴ 30

Hi all

Does anyone know if BBTools/BBMap and Qualimap are affected by the log4j vulnerability announced on 09-Dec-2021

Probably GenoMax and/or Brian Bushnell might be able to answer for BBMap

https://github.com/nf-core/rnaseq/issues/734#issuecomment-995031975

Thanks in advance

BBMap Qualimap BBTools • 781 views
ADD COMMENT
0
Entering edit mode
2.4 years ago

no, unless the tools are used as a library in a web server.

ADD COMMENT
0
Entering edit mode
2.4 years ago

It's worth noting picard.jar and abra.jar are affected (even though as Pierre L says, these are unlikely to be attacked on most systems).

If you're responsible for systems, esp web servers, it would pay to upgrade by downloading the latest jar and removing the older ones.

Not sure how bad a problem this could be with Galaxy webservers for example, where picard is used widely.

ADD COMMENT

Login before adding your answer.

Traffic: 1774 users visited in the last hour
Help About
FAQ
Access RSS
API
Stats

Use of this site constitutes acceptance of our User Agreement and Privacy Policy.

Powered by the version 2.3.6