메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 524

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
90 Oracle Critical Patch Update for January 2022 명품관 2022.01.20 603 0
89 Oracle REST Data Services 21.4 available ! 명품관 2021.12.23 583 0
88 AWS Builders Online Series - AWS를 빠르게 시작하는 방법(2021년 1월 20일) 명품관 2021.12.23 570 0
87 오라클 April 2023 Critical Patch Update Released 명품관 2023.04.19 565 0
86 2016년 Oracle Open World 소식 file 명품관 2016.04.15 558 0
85 PostgreSQL 16 Beta 2 Released! 명품관 2023.06.30 547 0
84 DTrace on Windows 명품관 2019.03.12 545 0
83 Oracle Big Data Appliance 5.2 Available Now! 명품관 2021.03.03 537 0
82 Exadata System Software Updates - January 2024 명품관 2024.01.29 533 0
81 MariaDB Connector/Python Beta Now Available 명품관 2020.02.20 527 0
» Log4Shell and MariaDB (CVE-2021-44228) 명품관 2021.12.22 524 0
79 Free webinar - Advanced Oracle Database Administration in Action with Uwe Hesse 명품관 2016.01.06 517 0
78 MariaDB 10.8.0 preview releases now available 명품관 2021.12.27 515 0
77 VirtualBox 6.1.6 Released 명품관 2020.05.15 511 0
76 What's new in Oracle Help Center Learn: February 2023 명품관 2023.03.09 509 0
75 ODA 19.19 Release is Now Available! 명품관 2023.05.24 508 0
74 Oracle VirtualBox 5.0.14 released! 명품관 2016.01.21 504 0
73 Oracle 20c Ducuments is available Now!! 명품관 2020.02.17 504 0
72 Exadata System Software Release 23.1 명품관 2023.03.08 504 0
71 Oracle Exadata X6 released~~~ 명품관 2016.04.06 498 0
위로