메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 420

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
112 오라클 릴리즈 로드맵 [2] file 명품관 2019.05.15 7261 1
111 오라클 19c에서 desupport 되는 기능들 명품관 2019.02.19 5216 0
110 오라클 18c Express Edition(XE) 윈도우 버전 사용 가능 명품관 2019.02.22 64371 0
109 오라클 20c부터 Non-CDB가 지원되지 않습니다. file 명품관 2020.02.03 1060 0
108 PostgreSQL 12.2, 11.7, 10.12, 9.6.17, 9.5.21, and 9.4.26 Released! 명품관 2020.02.14 705 0
107 MySQL Webinar - Best practices for MySQL Performance 명품관 2021.02.05 273 0
106 MySQL Database Service (in Oracle Cloud Infrastructure) file 명품관 2021.02.04 16679 0
105 ODA 19.19 Release is Now Available! 명품관 2023.05.24 428 0
» Log4Shell and MariaDB (CVE-2021-44228) 명품관 2021.12.22 420 0
103 Oracle REST Data Services 21.4 available ! 명품관 2021.12.23 474 0
102 MariaDB Java Connector 2.7.5 now available 명품관 2022.01.20 540 0
101 Microsoft Azure와 Oracle 클라우드 인프라를 통합하는 Oracle 애플리케이션 솔루션 명품관 2022.01.28 434 0
100 Exadata System Software Updates - March 2023 명품관 2023.03.09 321 0
99 ACE Blog Posts and Podcasts February 24 - March 23, 2023: APEX, Database, MySQL / SQL, OCI and More 명품관 2023.03.29 253 0
98 Oracle Database 23c Free Developer Release - 10 features you should know 명품관 2023.04.13 317 0
97 Oracle GoldenGate Free 21c now available! 명품관 2023.05.03 344 0
96 VS Code 확장 프로그램으로 OCI Toolkit 발표 명품관 2023.06.02 291 0
95 pgAdmin 4 v7.4 Released 명품관 2023.07.06 295 0
94 PostgreSQL 16 Released! 명품관 2023.09.15 388 0
93 Exadata System Software Updates - March 2024 명품관 2024.04.08 223 0
위로