메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 532

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
90 Oracle Database 12.2 Release 스케줄 정보 [1] 명품관 2017.02.01 664 0
89 Linux 5.1-rc5 Kernel Released 명품관 2019.04.15 677 0
88 Announcing MySQL Server 8.0.15 명품관 2019.02.07 681 0
87 Oracle Open World 2019 세션별 내용 자료 다운로드 링크 명품관 2019.09.26 685 0
86 The Modern Command Line (SQL, PL/SQL) 명품관 2015.11.24 687 0
85 "파격은 없었다”…카카오뱅크, 기간계 DBMS로 오라클 결정 명품관 2016.04.07 688 0
84 오라클 매거진 - November/December 2015 명품관 2016.01.27 691 0
83 Oracle Enterprise Manager 13c Release 5 Update 20 (13.5.0.20) 가 릴리즈 명품관 2024.02.26 717 0
82 Big Data Lite 4.4.0 is now available on OTN 명품관 2016.02.24 719 0
81 Oracle Critical Patch Update Advisory - January 2020 명품관 2020.01.22 719 0
80 MariaDB 10.5.9, 10.4.18, 10.3.28 and 10.2.37 now available 명품관 2021.02.23 733 0
79 Announcing the general availability of Unbreakable Enterprise Kernel Release 4 명품관 2016.01.11 738 0
78 Oracle Open World 스탭의 메가 트위터 리스트~ 명품관 2019.09.26 738 0
77 MySQL의 대다수 Product가 8.0.20 버전에 해당하는 버전으로 릴리즈 되었습니다. 명품관 2020.05.15 739 0
76 VirtualBox 6.0.4 released 명품관 2019.01.30 741 0
75 MySQL 8.3 버전(Innovation 포함) 몇가지가 릴리즈 배포 명품관 2024.01.17 754 0
74 PostgreSQL 14 Internals 무료 pdf 제공 명품관 2023.03.13 760 0
73 PostgreSQL 12.2, 11.7, 10.12, 9.6.17, 9.5.21, and 9.4.26 Released! 명품관 2020.02.14 771 0
72 Windows Subsystem for Linux Overview 명품관 2016.05.04 773 0
71 MS Windows에서 Oracle Database 18c 이용 가능 file 명품관 2018.09.06 776 0
위로