메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 531

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
113 오라클 릴리즈 로드맵 [2] file 명품관 2019.05.15 7346 1
112 2023년 5월 오라클 Help Center Learn의 튜토리얼과 labs 명품관 2023.06.13 423 0
111 오라클 평생 지원 정책(Oracle Lifetime Support Policy) file 명품관 2017.03.07 1828 0
110 Announcing MySQL Server 8.0.15 명품관 2019.02.07 678 0
109 HP-UX, AIX용 Oracle Databas 19c(19.3) 다운로드 가능 명품관 2019.06.10 1590 0
108 오라클 20c New Features 명품관 2020.02.17 3216 0
107 오라클 데이터베이스 19c 버전이 리눅스 8.x Update 1+에서 인증 명품관 2020.05.14 4463 0
106 MariaDB 10.5.9, 10.4.18, 10.3.28 and 10.2.37 now available 명품관 2021.02.23 732 0
105 Oracle Database 19c Important Recommended One-off Patches (Doc ID 2720807.1) file 명품관 2021.03.03 782 0
104 Oracle Developer Day(2022년 1월 19일(수)) 명품관 2021.12.23 397 0
103 AWS Builders Online Series - AWS를 빠르게 시작하는 방법(2021년 1월 20일) 명품관 2021.12.23 573 0
102 Oracle Cloud Infrastructure and Red Hat Enterprise Linux 명품관 2023.02.01 5882 0
101 RHEL runs on OCI supported by Oracle and Red Hat 명품관 2023.02.02 314 0
100 MariaDB Python Connector 1.1.6 now available 명품관 2023.03.09 413 0
99 Oracle 23c의 JSON Relational Duality(JSON 관계형 이원성)의 주요 이점 명품관 2023.04.05 435 0
98 Oracle Database Monthly News - March 2023 - Quick Links 명품관 2023.04.18 355 0
97 Oracle Spatial Studio 23.1 Free 릴리즈 명품관 2023.05.04 382 0
96 MariaDB C Connector 3.3.5 and 3.1.21 now available 명품관 2023.05.25 411 0
95 Exadata System Software 23.1.4.0.0 Update 명품관 2023.07.19 369 0
94 Oracle Critical Patch Update Advisory - January 2024 명품관 2024.01.17 396 0
위로