Source |
The Hacker News |
Identifiant |
3798347 |
Date de publication |
2021-12-14 21:53:07 (vue: 2021-12-15 06:06:08) |
Titre |
Second Log4j Vulnerability (CVE-2021-45046) Discovered - New Patch Released |
Texte |
The Apache Software Foundation (ASF) has pushed out a new fix for the Log4j logging utility after the previous patch for the recently disclosed Log4Shell exploit was deemed as "incomplete in certain non-default configurations."
The second vulnerability - tracked as CVE-2021-45046 - is rated 3.7 out of a maximum of 10 on the CVSS rating system and affects all versions of Log4j from 2.0-beta9 |
Notes |
|
Envoyé |
Oui |
Condensat |
2021 45046 45046 affects after all apache asf as cve beta9 certain configurations cve cvss deemed default disclosed log4shell exploit discovered fix foundation from has incomplete log4j logging maximum new non out patch previous pushed rated rating recently released second software system tracked utility versions vulnerability |
Tags |
Vulnerability
|
Stories |
|
Move |
|