메뉴 건너뛰기

Korea Oracle User Group

새소식

Log4Shell and MariaDB (CVE-2021-44228)

명품관 2021.12.22 15:27 조회 수 : 402

Log4Shell and MariaDB (CVE-2021-44228)

Several MariaDB customers have asked us about CVE-2021-44228 aka “Log4Shell”, a vulnerability in the Log4j Java logging framework which may allow remote code execution (RCE).

Update: The detail here also addresses the second Log4j vulnerability, CVE-2021-45046.

MariaDB Products

No MariaDB product is directly impacted by this CVE. MariaDB Connector/J can optionally be configured to use Log4j. Users of MariaDB Connector/J should see this blog for a detailed explanation of CVE-2021-44228 and mitigations.

MariaDB Hosted Systems

MariaDB’s security team has reviewed our systems. While we have no vulnerable customer-facing systems, an internal system used a version of Log4j covered by CVE-2021-44228. We have mitigated the vulnerability in this internal system and reviewed all logs for suspicious activity.

Additional Information

If you have any questions about this, please contact us either through our support site (for customers) or by clicking here.

For details on MariaDB’s end-to-end security strategy, visit our Trust Center.

For information on reporting a security vulnerability, visit our vulnerability reporting page.

번호 제목 글쓴이 날짜 조회 수 추천 수
109 Oracle REST Data Services 21.4 available ! 명품관 2021.12.23 459 0
» Log4Shell and MariaDB (CVE-2021-44228) 명품관 2021.12.22 402 0
107 pgAdmin 4 v6.3 Released 명품관 2021.12.22 664 0
106 MariaDB Enterprise Server 10.6.5-2, and others, now available file 명품관 2021.12.22 319 0
105 Oracle Big Data Appliance 5.2 Available Now! 명품관 2021.03.03 473 0
104 Oracle Database 19c Important Recommended One-off Patches (Doc ID 2720807.1) file 명품관 2021.03.03 700 0
103 MariaDB 10.5.9, 10.4.18, 10.3.28 and 10.2.37 now available 명품관 2021.02.23 625 0
102 MySQL Webinar - What’s Old is New; What’s Coming is Here: Percona Offerings for MySQL 5.6 and DBaaS in PMM 명품관 2021.02.08 1044 0
101 MySQL Webinar - Best practices for MySQL Performance 명품관 2021.02.05 261 0
100 MySQL Database Service (in Oracle Cloud Infrastructure) file 명품관 2021.02.04 16657 0
99 Oracle SQL Developer version 20.4 릴리즈 명품관 2021.01.26 844 0
98 Oracle Database 21c is available in the cloud 명품관 2020.12.09 1205 0
97 MySQL의 대다수 Product가 8.0.20 버전에 해당하는 버전으로 릴리즈 되었습니다. 명품관 2020.05.15 629 0
96 VirtualBox 6.1.6 Released 명품관 2020.05.15 439 0
95 MariaDB Server 10.5.3 RC 사용 가능 명품관 2020.05.15 749 0
94 PostgreSQL 12.3, 11.8, 10.13, 9.6.18, and 9.5.22 Released! 명품관 2020.05.15 548 0
93 MariaDB 10.4.13, 10.3.23, 10.2.32, 10.1.45 and 5.5.68 now available 명품관 2020.05.14 1688 0
92 티베로 DB에 대한 외국 컨설턴트의 리뷰 명품관 2020.05.14 949 0
91 오라클 데이터베이스 19c 버전이 리눅스 8.x Update 1+에서 인증 명품관 2020.05.14 4382 0
90 MariaDB 10.5.2 now available(아직까지는 베타 버전) 명품관 2020.03.30 495 0
위로