Re: 0-day Apache log4j RCE vulnerability

2021-12-10 Thread Uwe Schindler
See the security advisory: https://solr.apache.org/security.html#apache-solr-affected-by-apache-log4j-cve-2021-44228 Uwe Am 10. Dezember 2021 19:18:08 UTC schrieb Michael Schumann : >It looks like this affects Solr versions >= 7.4. Am I reading this correctly? > > >References: >https://www.luna

0-day Apache log4j RCE vulnerability

2021-12-10 Thread Michael Schumann
It looks like this affects Solr versions >= 7.4. Am I reading this correctly? References: https://www.lunasec.io/docs/blog/log4j-zero-day/ https://www.cyberkendra.com/2021/12/worst-log4j-rce-zeroday-dropped-on.html https://help.aliyun.com/noticelist/articleid/1060971232.html