메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 490

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
190 VirtualBox 5.0.10 released! November 10th, 2015 ecrossoug 2015.11.13 1019 0
189 Oracle Announces Beta Availability of Oracle Database 12c Release 2 명품관 2015.12.07 993 0
188 2023년 5월 오라클 Help Center Learn의 튜토리얼과 labs 명품관 2023.06.13 393 0
187 The Modern Command Line (SQL, PL/SQL) 명품관 2015.11.24 675 0
186 How to Test OCFS2 in a Virtual Environment 명품관 2015.11.24 1969 0
185 How to Configure x86 Memory Performance for Large Databases Using Linux HugePages 명품관 2015.11.24 1511 0
184 How to Set Up DTrace to Detect PHP Scripting Problems on Oracle Linux 명품관 2015.11.24 2142 0
183 Advanced Usage of the AWR Warehouse 명품관 2015.11.24 1066 0
182 Multitenant Database Management 명품관 2015.11.24 650 0
181 Oracle VirtualBox 5.0.14 released! 명품관 2016.01.21 498 0
180 Announcing the general availability of Oracle Linux 7.2 명품관 2015.11.30 187381 0
179 Watch featured OTN Virtual Technology Summit Replay Sessions - Nov 30, 2015 명품관 2015.12.01 30895 0
178 Free webinar - Advanced Oracle Database Administration in Action with Uwe Hesse 명품관 2016.01.06 509 0
177 Oracle PL/SQL to Excel xlsx API ORA_EXCEL 명품관 2016.01.07 1500 0
176 Time-out and Thanks by Tom Kyte (Tom Kyte 의 휴식) 명품관 2016.01.08 20858 0
175 Oracle Database certification on Microsoft Windows 10 명품관 2016.01.08 3226 0
174 Announcing the general availability of Unbreakable Enterprise Kernel Release 4 명품관 2016.01.11 726 0
173 오라클 2016년 01월 CPU 패치 릴리즈(January 2016 Critical Patch Update Released) 명품관 2016.01.21 1821 0
172 MOS Note:884522.1 - New preupgrd.sql available 명품관 2015.12.09 594 0
171 Oracle Enterprise Manager Cloud Control 13c Release 1 (13.1.0.0) 명품관 2015.12.21 468 0
위로