{
  "cves": [
    "CVE-2022-23305",
    "CVE-2022-23302",
    "CVE-2022-23307",
    "CVE-2021-4104"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "IMPORTANT"
  },
  "description": "parfait\n[0.5.4-4]\n- Obsolete (remove) vulnerable versions of log4j12 (NVR  1.2.17-23)\n  when upgrading to parfait 0.5.4-4 (CVE-2021-4104)\n\n[0.5.4-3]\n- Drop all code explicitly using Log4J (BZ 2032158)",
  "id": "ELSA-2022-0290",
  "ovalId": "oval:com.oracle.elsa:def:20220290",
  "source": "oracle_linux",
  "title": "ELSA-2022-0290:  parfait:0.5 security update (IMPORTANT)",
  "url": "https://linux.oracle.com/errata/ELSA-2022-0290.html"
}