recent log4j vulnerability status #171
-
Hi, can we can any info on whether RADAR-Kubernetes is affected by the vulnerability and an ETA on a fix if yes? https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-44228 Thanks |
Beta Was this translation helpful? Give feedback.
Replies: 5 comments
-
I can confirm that RADAR-Kubernetes is vulnerable at least through graylog. Can we have an ETA on a fix? In the meantime our machines will stay offline and we won't be able to progress.
|
Beta Was this translation helpful? Give feedback.
-
Hi all, RADAR-Kubernetes is vulnerable to the log4shell vulnerability. We are working on fixes. We don't have an ETA on this. We hope to provide the fix ASAP. We suggest to turn off your infrastructure or manually apply the mitigations on all pods that uses Java. |
Beta Was this translation helpful? Give feedback.
-
Just to confirm, is this fixed? Thanks! |
Beta Was this translation helpful? Give feedback.
-
@iDmple The Log4j issues have been resolved with #173. Please read the report for the details of patches applied |
Beta Was this translation helpful? Give feedback.
-
Perfect thanks! |
Beta Was this translation helpful? Give feedback.
@iDmple The Log4j issues have been resolved with #173. Please read the report for the details of patches applied