메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 503

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
33 Oracle Database 19c 매뉴얼 문서 오픈 명품관 2019.02.15 4659 0
32 Oracle Database 19c requires OL7, RHEL7 or SLES12 or newer 명품관 2019.02.15 3999 0
31 Oracle Critical Patch Update Advisory - January 2020 명품관 2020.01.22 686 0
30 Oracle Database 21c is available in the cloud 명품관 2020.12.09 1300 0
29 MariaDB Enterprise Server 10.6.5-2, and others, now available file 명품관 2021.12.22 397 0
28 오라클 OCI 자격 시험 무료 기한을 2022년 2월 28일까지 연장 [2] 명품관 2021.12.28 790 0
27 MariaDB Community Server 11.0 now RC 명품관 2023.02.27 289 0
26 Virtual Classroom Series Upgrade to Oracle Database 19c 명품관 2023.03.27 301 0
25 ACE Blog Posts and Podcasts April 3 – April 9, 2023: Oracle 23c Free Developer Release, APEX, OCI, SQL, and More 명품관 2023.04.11 374 0
24 ACE Blog Posts and Podcasts April 10 – April 19, 2023: Oracle 23c Free Developer Release, APEX, Database, OCI, SQL, Analytics and More 명품관 2023.04.21 352 0
23 MariaDB 10.11.3, 10.10.4, 10.9.6, 10.8.8, 10.6.13, 10.5.20, 10.4.29 and 10.3.39 now available 명품관 2023.05.18 457 0
22 PgBouncer 1.19.0 released 명품관 2023.05.18 281 0
21 pgmetrics 1.15 released 명품관 2023.05.25 298 0
20 PostgreSQL 16 Beta 1 Released! 명품관 2023.05.26 437 0
19 Oracle Exadata X10M 발표, Exadata Cloud@Customer X10M 발표 소식입니다 명품관 2023.06.28 399 0
18 PostgreSQL 16 Beta 2 Released! 명품관 2023.06.30 511 0
17 MariaDB Community Server 11.1 GA and 11.2 RC 명품관 2023.08.23 373 0
16 PostgreSQL에서 사용하는 pgAdmin 4 v7.6가 릴리즈 되었습니다. 명품관 2023.08.28 367 0
15 Oracle Enterprise Manager 13c Release 5 Update 19 (13.5.0.19) 배포 명품관 2024.01.22 459 0
14 Exadata System Software Updates - January 2024 명품관 2024.01.29 519 0
위로