Skip to menu

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 Views : 529

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

No. Subject Author Date Views Votes
110 Oracle Critical Patch Update Advisory - January 2020 명품관 2020.01.22 717 0
109 Oracle Enterprise Manager 13c Release 5 Update 20 (13.5.0.20) 가 릴리즈 명품관 2024.02.26 715 0
108 Big Data Lite 4.4.0 is now available on OTN 명품관 2016.02.24 714 0
107 오라클 매거진 - November/December 2015 명품관 2016.01.27 690 0
106 "파격은 없었다”…카카오뱅크, 기간계 DBMS로 오라클 결정 명품관 2016.04.07 687 0
105 The Modern Command Line (SQL, PL/SQL) 명품관 2015.11.24 686 0
104 Oracle Open World 2019 세션별 내용 자료 다운로드 링크 명품관 2019.09.26 678 0
103 Announcing MySQL Server 8.0.15 명품관 2019.02.07 675 0
102 Linux 5.1-rc5 Kernel Released 명품관 2019.04.15 674 0
101 Multitenant Database Management 명품관 2015.11.24 663 0
100 Oracle Database 12.2 Release 스케줄 정보 [1] 명품관 2017.02.01 662 0
99 PostgreSQL 11.2, 10.7, 9.6.12, 9.5.16, and 9.4.21 Released! 명품관 2019.02.21 661 0
98 Announcing MySQL Server 8.0.18, 5.7.28 and 5.6.46 명품관 2019.10.15 655 0
97 NEW PRODUCT RELEASE: MySQL 8.0.19 명품관 2020.02.18 654 0
96 MariaDB Java Connector 2.7.5 now available 명품관 2022.01.20 633 0
95 SQLcl 21.4 Downloads available! 명품관 2021.12.23 631 0
94 PostgreSQL 12.3, 11.8, 10.13, 9.6.18, and 9.5.22 Released! 명품관 2020.05.15 629 0
93 MariaDB 10.5.2 now available(아직까지는 베타 버전) 명품관 2020.03.30 624 0
92 Oracle Exadata Database Machine 19.1.0 Documentation 명품관 2019.01.18 613 0
91 Oracle Critical Patch Update for January 2022 명품관 2022.01.20 610 0
Up