Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Published: 2021-12-14

Last modified: 2021-12-14

Problem

There’s a known bug in the Apache Log4j Log4j2 library that allows an attacker to perform RCE attack CVE-2021-44228, and another bug allowing to perform DoS attack CVE-2021-45046.

Solution

To patch the vulnerabilities in CVE-2021-44228 and CVE-2021-45046 please update vprotect to the following versions:

...