메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 450

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
22 MariaDB Node.js Connector 3.2.3, Java Connector 3.3.2 now available 명품관 2023.12.20 259 0
21 MariaDB Community Server 11.1 GA and 11.2 RC 명품관 2023.08.23 322 0
20 MariaDB 11.2.0 preview release available 명품관 2023.06.27 336 0
19 MariaDB Community Server 11.0 GA and 11.1 RC 릴리즈 소식 명품관 2023.06.07 322 0
18 MariaDB C Connector 3.3.5 and 3.1.21 now available 명품관 2023.05.25 320 0
17 MariaDB Enterprise 10.6.12-8 now available 명품관 2023.05.25 364 0
16 MariaDB 10.11.3, 10.10.4, 10.9.6, 10.8.8, 10.6.13, 10.5.20, 10.4.29 and 10.3.39 now available 명품관 2023.05.18 417 0
15 MariaDB Node.js Connector 3.1.2 now available 명품관 2023.05.04 247 0
14 MariaDB Java Connector 3.1.4 now available 명품관 2023.05.03 317 0
13 MariaDB ODBC Connector 3.1.18 now available 명품관 2023.04.18 335 0
12 MariaDB Python Connector 1.1.6 now available 명품관 2023.03.09 326 0
11 MariaDB Community Server 11.0 now RC 명품관 2023.02.27 261 0
10 MariaDB 10.11.2 GA now available 명품관 2023.02.27 379 0
9 MariaDB Java Connector 2.7.5 now available 명품관 2022.01.20 576 0
8 MariaDB 10.8.0 preview releases now available 명품관 2021.12.27 463 0
» Log4Shell and MariaDB (CVE-2021-44228) 명품관 2021.12.22 450 0
6 pgAdmin 4 v6.3 Released 명품관 2021.12.22 706 0
5 MariaDB Enterprise Server 10.6.5-2, and others, now available file 명품관 2021.12.22 347 0
4 MariaDB Server 10.5.3 RC 사용 가능 명품관 2020.05.15 791 0
3 MariaDB 10.4.13, 10.3.23, 10.2.32, 10.1.45 and 5.5.68 now available 명품관 2020.05.14 1706 0
위로