From 234dc5f9f2cc3e724cdb55b76f223ce4433f3325 Mon Sep 17 00:00:00 2001 From: Tom Wiesing Date: Tue, 14 Dec 2021 10:42:42 +0100 Subject: [PATCH] triplestore/Dockerfile: Workaround for CVE-2021-44228 --- distillery/resources/compose/triplestore/Dockerfile | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/distillery/resources/compose/triplestore/Dockerfile b/distillery/resources/compose/triplestore/Dockerfile index 9fb1c77..38747b4 100644 --- a/distillery/resources/compose/triplestore/Dockerfile +++ b/distillery/resources/compose/triplestore/Dockerfile @@ -42,6 +42,10 @@ COPY --from=sources /opt/graphdb /opt/graphdb ENV GRAPHDB_HOME=/opt/graphdb ENV PATH=$GRAPHDB_HOME/bin:$PATH +# Workaround for CVE-2021-44228 +# (not sure if we are vulnerable, but just because) +ENV LOG4J_FORMAT_MSG_NO_LOOKUPS=true + # expose a port EXPOSE 7200