메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 531

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
70 Oracle Database 19c Important Recommended One-off Patches (Doc ID 2720807.1) file 명품관 2021.03.03 783 0
69 pgAdmin 4 v6.3 Released 명품관 2021.12.22 784 0
68 오라클 OCI 자격 시험 무료 기한을 2022년 2월 28일까지 연장 [2] 명품관 2021.12.28 807 0
67 Windows와 z 시스템의 Linux 용 Oracle Database 19c(19.3.0) 다운로드 가능 file 명품관 2019.06.11 816 0
66 Introducing Oracle Database 23c Free – Developer Release [1] 명품관 2023.04.04 834 0
65 MariaDB Server 10.5.3 RC 사용 가능 명품관 2020.05.15 867 0
64 Oracle SQL Developer version 20.4 릴리즈 명품관 2021.01.26 920 0
63 SQL Dashboard – V2 명품관 2016.04.27 934 0
62 Oracle Announces Beta Availability of Oracle Database 12c Release 2 명품관 2015.12.07 1020 0
61 SQLcl Updated: Bug Fixes 명품관 2016.02.24 1033 0
60 VirtualBox 5.0.10 released! November 10th, 2015 ecrossoug 2015.11.13 1034 0
59 티베로 DB에 대한 외국 컨설턴트의 리뷰 명품관 2020.05.14 1055 0
58 Advanced Usage of the AWR Warehouse 명품관 2015.11.24 1080 0
57 MySQL Webinar - What’s Old is New; What’s Coming is Here: Percona Offerings for MySQL 5.6 and DBaaS in PMM 명품관 2021.02.08 1107 0
56 오라클 20c부터 Non-CDB가 지원되지 않습니다. file 명품관 2020.02.03 1132 0
55 Oracle VM VirtualBox 6.1.2 릴리즈 명품관 2020.01.22 1149 0
54 Oracle Critical Patch Update Advisory - January 2019 명품관 2019.01.21 1151 0
53 VirtualBox Appliance로 오라클 12.2 사용하기 명품관 2017.03.03 1187 0
52 Python python-oracledb Driver 명품관 2023.04.05 1233 0
51 OTN Virtual Technology Summit Replay Libraries 명품관 2016.05.11 1295 0
위로