메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 419

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
129 pgAdmin 4 v6.21 Released 명품관 2023.03.14 281 0
128 PostgreSQL 14 Internals 무료 pdf 제공 명품관 2023.03.13 623 0
127 MariaDB Python Connector 1.1.6 now available 명품관 2023.03.09 298 0
126 What's new in Oracle Help Center Learn: February 2023 명품관 2023.03.09 412 0
125 What’s in it for you? Attend Free MySQL Summit on March 23rd 명품관 2023.03.09 225 0
124 Exadata System Software Updates - March 2023 명품관 2023.03.09 318 0
123 Exadata System Software Release 23.1 명품관 2023.03.08 369 0
122 MariaDB Community Server 11.0 now RC 명품관 2023.02.27 243 0
121 MariaDB 10.11.2 GA now available 명품관 2023.02.27 347 0
120 RHEL runs on OCI supported by Oracle and Red Hat 명품관 2023.02.02 233 0
119 Oracle Cloud Infrastructure and Red Hat Enterprise Linux 명품관 2023.02.01 5767 0
118 오라클 클라우드 피닉스, 서울 리전이 마이크로소프트 Azure와 연결 리전으로 추가 명품관 2022.01.28 4459 0
117 Microsoft Azure와 Oracle 클라우드 인프라를 통합하는 Oracle 애플리케이션 솔루션 명품관 2022.01.28 431 0
116 MariaDB Java Connector 2.7.5 now available 명품관 2022.01.20 539 0
115 Oracle Critical Patch Update for January 2022 명품관 2022.01.20 471 0
114 오라클 OCI 자격 시험 무료 기한을 2022년 2월 28일까지 연장 [2] 명품관 2021.12.28 722 0
113 MariaDB 10.8.0 preview releases now available 명품관 2021.12.27 433 0
112 AWS Builders Online Series - AWS를 빠르게 시작하는 방법(2021년 1월 20일) 명품관 2021.12.23 484 0
111 Oracle Developer Day(2022년 1월 19일(수)) 명품관 2021.12.23 314 0
110 SQLcl 21.4 Downloads available! 명품관 2021.12.23 477 0
위로