메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 585

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
113 2023년 5월 오라클 Help Center Learn의 튜토리얼과 labs 명품관 2023.06.13 480 0
112 "파격은 없었다”…카카오뱅크, 기간계 DBMS로 오라클 결정 명품관 2016.04.07 711 0
111 오라클 평생 지원 정책(Oracle Lifetime Support Policy) file 명품관 2017.03.07 1893 0
110 Oracle Database 19c 다운로드 가능 명품관 2019.04.30 59766 0
109 Oracle 20c Ducuments is available Now!! 명품관 2020.02.17 557 0
108 MySQL Webinar - What’s Old is New; What’s Coming is Here: Percona Offerings for MySQL 5.6 and DBaaS in PMM 명품관 2021.02.08 1141 0
107 SQLcl 21.4 Downloads available! 명품관 2021.12.23 709 0
106 오라클 클라우드 피닉스, 서울 리전이 마이크로소프트 Azure와 연결 리전으로 추가 명품관 2022.01.28 4601 0
105 What's new in Oracle Help Center Learn: February 2023 명품관 2023.03.09 559 0
104 Python python-oracledb Driver 명품관 2023.04.05 1263 0
103 pgAdmin 4 v7.0 Released 명품관 2023.04.18 356 0
102 Exadata System Software Updates - April 2023 명품관 2023.05.03 441 0
101 MariaDB Enterprise 10.6.12-8 now available 명품관 2023.05.25 487 0
100 MariaDB C Connector 3.3.5 and 3.1.21 now available 명품관 2023.05.25 455 0
99 OCI 무료 시험 프로모션 진행(Join the Race to Certification!) file 명품관 2023.06.09 532 0
98 2023년 7월 오라클 CPU 패치 업데이트 명품관 2023.07.19 486 0
97 Exadata System Software 23.1.4.0.0 Update 명품관 2023.07.19 398 0
96 MariaDB Node.js Connector 3.2.3, Java Connector 3.3.2 now available 명품관 2023.12.20 317 0
95 Oracle Critical Patch Update Advisory - January 2024 명품관 2024.01.17 428 0
94 Oracle Database 23ai 발표: 정식 출시 명품관 2024.05.07 281 0
위로