Hello,
We found log4j-1.2.17.jar under path /usr/share/dse/spark/client-lib/, which has multiple vulnerabilities.
Since we didn't enable spark, could we safely remove this jar file?
# Start the node in Spark mode SPARK_ENABLED=0
Thanks
Bringing together the Apache Cassandra experts from the community and DataStax.
Want to learn? Have a question? Want to share your expertise? You are in the right place!
Not sure where to begin? Getting Started
Hello,
We found log4j-1.2.17.jar under path /usr/share/dse/spark/client-lib/, which has multiple vulnerabilities.
Since we didn't enable spark, could we safely remove this jar file?
# Start the node in Spark mode SPARK_ENABLED=0
Thanks
8 People are following this question.
DataStax Enterprise is powered by the best distribution of Apache Cassandra ™
© 2022 DataStax, Titan, and TitanDB are registered trademarks of DataStax, Inc. and its subsidiaries in the United States and/or other countries.
Apache, Apache Cassandra, Cassandra, Apache Tomcat, Tomcat, Apache Lucene, Lucene, Apache Solr, Apache Hadoop, Hadoop, Apache Spark, Spark, Apache TinkerPop, TinkerPop, Apache Kafka and Kafka are either registered trademarks or trademarks of the Apache Software Foundation or its subsidiaries in Canada, the United States and/or other countries.
Privacy Policy Terms of Use