메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 489

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
190 Oracle Database 23ai 발표: 정식 출시 명품관 2024.05.07 81 0
189 Exadata System Software Updates - December 2023 명품관 2023.12.20 220 0
188 MariaDB 10.4.12, 10.3.22, and others now available 명품관 2020.02.03 270 0
187 PgBouncer 1.19.0 released 명품관 2023.05.18 271 0
186 Virtual Classroom Series Upgrade to Oracle Database 19c 명품관 2023.03.27 273 0
185 MariaDB Node.js Connector 3.1.2 now available 명품관 2023.05.04 273 0
184 MariaDB Node.js Connector 3.2.3, Java Connector 3.3.2 now available 명품관 2023.12.20 274 0
183 What’s in it for you? Attend Free MySQL Summit on March 23rd 명품관 2023.03.09 277 0
182 MariaDB Community Server 11.0 now RC 명품관 2023.02.27 280 0
181 RHEL runs on OCI supported by Oracle and Red Hat 명품관 2023.02.02 284 0
180 MySQL 8.0.33 GA(General Availability) 릴리즈(2023-04-18) 명품관 2023.04.20 284 0
179 pgmetrics 1.15 released 명품관 2023.05.25 291 0
178 ACE Blog Posts and Podcasts February 24 - March 23, 2023: APEX, Database, MySQL / SQL, OCI and More 명품관 2023.03.29 295 0
177 pgAdmin 4 v7.0 Released 명품관 2023.04.18 298 0
176 MySQL Webinar - Best practices for MySQL Performance 명품관 2021.02.05 316 0
175 Exadata System Software Updates - March 2024 명품관 2024.04.08 325 0
174 Exadata System Software Updates - April 2023 명품관 2023.05.03 326 0
173 Oracle Database Monthly News - March 2023 - Quick Links 명품관 2023.04.18 328 0
172 Exadata System Software 23.1.4.0.0 Update 명품관 2023.07.19 333 0
171 pgAdmin 4 v7.4 Released 명품관 2023.07.06 338 0
위로