[SAC] [Hosting] Log4j2 Zero-day Vulnerability


There was a zero-day vulnerability announced today [1] affecting the Log4j Java library. I checked our infrastructure and didn’t find any use but I need everyone else to please check your systems if you’re using Java and be sure to patch your systems ASAP.


[1] https://nvd.nist.gov/vuln/detail/CVE-2021-44228


Lance Albertson

Oregon State University | Open Source Lab

Just a heads up, this library gets used in a lot of places for example Apache Solr, ElasticSearch, Logstash and Kafka to name a few.


Lance Albertson

Oregon State University | Open Source Lab