메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 484

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
113 Oracle Database 19c requires OL7, RHEL7 or SLES12 or newer 명품관 2019.02.15 3978 0
112 오라클 19c에서 desupport 되는 기능들 명품관 2019.02.19 5259 0
111 이번 분기에 334개 소프트웨어 취약점 패치 발표한 오라클 명품관 2020.01.22 412 0
110 오라클 20c부터 Non-CDB가 지원되지 않습니다. file 명품관 2020.02.03 1094 0
109 Oracle SQL Developer version 20.4 릴리즈 명품관 2021.01.26 900 0
108 MySQL Database Service (in Oracle Cloud Infrastructure) file 명품관 2021.02.04 16745 0
107 pgAdmin 4 v6.3 Released 명품관 2021.12.22 735 0
» Log4Shell and MariaDB (CVE-2021-44228) 명품관 2021.12.22 484 0
105 Oracle Critical Patch Update for January 2022 명품관 2022.01.20 545 0
104 MariaDB Java Connector 2.7.5 now available 명품관 2022.01.20 598 0
103 Exadata System Software Release 23.1 명품관 2023.03.08 455 0
102 Exadata System Software Updates - March 2023 명품관 2023.03.09 379 0
101 PostgreSQL JDBC 42.6.0 Released 명품관 2023.03.28 444 0
100 Oracle Enterprise Manager 13c Release 5 Update 14 (13.5.0.14) is now available 명품관 2023.04.11 382 0
99 Oracle Database World 2023 - Watch the Replays 명품관 2023.04.28 451 0
98 PostgreSQL 15.3, 14.8, 13.11, 12.15, and 11.20 Released! 명품관 2023.05.18 358 0
97 Oracle Enterprise Manager 13c Release 5 Update 15 (13.5.0.15) is now available 명품관 2023.06.01 461 0
96 2023년 7월 DB 랭킹 정보 file 명품관 2023.07.05 344 0
95 Exadata System Software Updates 소식(2023. 08) 명품관 2023.08.28 436 0
94 Oracle Enterprise Manager 13c Release 5 Update 20 (13.5.0.20) 가 릴리즈 명품관 2024.02.26 656 0
위로