[SAC] [Hosting] Log4j2 Zero-day Vulnerability

Lance Albertson lance at osuosl.org
Fri Dec 10 19:10:01 PST 2021


Just a heads up, this library gets used in a lot of places for example
Apache Solr, ElasticSearch, Logstash and Kafka to name a few.

On Fri, Dec 10, 2021 at 6:38 PM Lance Albertson <lance at osuosl.org> wrote:

> All,
>
> There was a zero-day vulnerability announced today [1] affecting the Log4j
> Java library. I checked our infrastructure and didn't find any use but I
> need everyone else to please check your systems if you're using Java and be
> sure to patch your systems ASAP.
>
> Thanks-
>
> [1] https://nvd.nist.gov/vuln/detail/CVE-2021-44228
>
> --
> Lance Albertson
> Director
> Oregon State University | Open Source Lab
>


-- 
Lance Albertson
Director
Oregon State University | Open Source Lab
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.osgeo.org/pipermail/sac/attachments/20211210/03642115/attachment.html>
-------------- next part --------------
_______________________________________________
Hosting mailing list
Hosting at osuosl.org
https://lists.osuosl.org/mailman/listinfo/hosting


More information about the Sac mailing list