Critical
Third-party Component | CVEs | More information |
Apache Log4j | CVE-2021-44228 | Apache Log4j Remote Code Execution |
Apache Log4j | CVE-2021-45046 | |
Apache Log4j | CVE-2021-45105 | |
Apache Log4j | CVE-2021-44832 |
Third-party Component | CVEs | More information |
Apache Log4j | CVE-2021-44228 | Apache Log4j Remote Code Execution |
Apache Log4j | CVE-2021-45046 | |
Apache Log4j | CVE-2021-45105 | |
Apache Log4j | CVE-2021-44832 |
Product | Affected Versions | Updated Versions | Link to Update |
Dell EMC ECS |
3.3.x, 3.4.x, 3.5.x, 3.6.0.x, 3.6.1.x, and 3.6.2.0 | ECS 3.7.0 Note: Apache Log4j is upgraded to 2.17.1. |
https://www.dell.com/support/home/en-us/product-support/product/ecs-appliance-/overview |
General Patch: 3.3.0.4, 3.4.0.6, 3.5.1.6, 3.6.2.1, 3.6.2.2 Note: Patches disable JNDI lookup class. |
https://www.dell.com/support/home/en-us/product-support/product/ecs-appliance-/overview |
||
Standalone Patch to “disable JNDI lookup class” for all affected versions. | Apply patch NOTE TO CUSTOMER:
|
Product | Affected Versions | Updated Versions | Link to Update |
Dell EMC ECS |
3.3.x, 3.4.x, 3.5.x, 3.6.0.x, 3.6.1.x, and 3.6.2.0 | ECS 3.7.0 Note: Apache Log4j is upgraded to 2.17.1. |
https://www.dell.com/support/home/en-us/product-support/product/ecs-appliance-/overview |
General Patch: 3.3.0.4, 3.4.0.6, 3.5.1.6, 3.6.2.1, 3.6.2.2 Note: Patches disable JNDI lookup class. |
https://www.dell.com/support/home/en-us/product-support/product/ecs-appliance-/overview |
||
Standalone Patch to “disable JNDI lookup class” for all affected versions. | Apply patch NOTE TO CUSTOMER:
|
|