VU#999008: New Vulnerability Report

2021-10-19 Thread VINCE via Gcc
Hello,

Greetings,

We have received a report that indicates that one of your products contains a 
vulnerability. In the interest of coordinated disclosure (which aims to address 
vulnerabilities before they can be exploited by attackers), we would like to 
communicate this information to you.

To view the details associated with this case, please visit 
https://kb.cert.org/vince/ and create an account on VINCE, which is our 
coordination platform. Within VINCE, it is possible to view the original 
vulnerability report. VINCE also facilitates direct communication with the 
reporter, pending the reporter's willingness to communicate about the case.

If you need to reply to this email, please do not alter the VU# in the subject 
line to ensure that your message is routed properly on our end.

Regards,

Vulnerability Analysis Team

CERT Coordination Center
kb.cert.org / c...@cert.org
==

View Online: https://kb.cert.org/vince/comm/case/205/

Access to the case requires a VINCE account.  If you do not have an account, 
please create an account: https://kb.cert.org/vince/comm/signup/

Thank you,
The CERT/CC Vulnerability Coordination Team


This e-mail was sent to you as a user of our VINCE service, in accordance with 
our privacy policy. Please advise us if you believe you have received this 
e-mail in error.


VU#930724: Apache Log4j CVE-2021-44228 tracking

2021-12-13 Thread VINCE via Gcc
Hello,

This case is primarily to collect and track vulnerability status for 
CVE-2021-44228, the Apache Log4j JNDI remote code execution vulnerability. We 
will be collecting public advisories and other information, but as usual would 
appreciate status updates and public references.

View Online: https://kb.cert.org/vince/comm/case/310/

Access to the case requires a VINCE account.  If you do not have an account, 
please create an account: https://kb.cert.org/vince/comm/signup/

Thank you,
The CERT/CC Vulnerability Coordination Team


This e-mail was sent to you as a user of our VINCE service, in accordance with 
our privacy policy. Please advise us if you believe you have received this 
e-mail in error.