• About Us
  • Contact Us
  • Today Headline
  • Write for us
Today Headline
No Result
View All Result
  • breaking news today
    • Politics news
    • Sports
    • Science News & Society
  • Entertainment News
    • Movie
    • Gaming
  • Technology News
    • Automotive
    • Software & IT
  • Health News
    • Lifestyle
    • Insurance
  • Finance News
    • Money
  • Enterprise
  • Contact Us
  • breaking news today
    • Politics news
    • Sports
    • Science News & Society
  • Entertainment News
    • Movie
    • Gaming
  • Technology News
    • Automotive
    • Software & IT
  • Health News
    • Lifestyle
    • Insurance
  • Finance News
    • Money
  • Enterprise
  • Contact Us
No Result
View All Result
TodayHeadline
No Result
View All Result

Yet another Log4j patch hoovers up new remote code execution bug

December 29, 2021
in Entertainment News
Reading Time: 2 mins read
oYokkwQasq8QqtjHcyvWDH – TodayHeadline



oYokkwQasq8QqtjHcyvWDH – TodayHeadline

Apache has released yet another patch for the now-infamous Log4j utility, which delivers a fix for a new remote code execution vulnerability.

The logging utility has been the center of attention in the cybersecurity community for much of December, after a major vulnerability was discovered that enabled malicious actors with very limited knowledge to run scripts remotely.

This gaping hole has since been patched, but the newer version of the logger came with flaws of its own, albeit not as dangerous as the original. Soon after that vulnerability was patched, yet another issue was discovered. 

With Log4j version 2.17.1., the latest vulnerability (tracked as CVE-2021-44832), has now been fixed. All users have been urged to prioritize the update.

Another Log4j patch

The latest vulnerability is classified as a remote code execution flaw, stemming from the lack of extra controls on JDNI access in Log4j. As BleepingComputer reports, the flaw is rated “Moderate” in severity, and has been assigned a score of 6.6/10 as per the Common Vulnerability Scoring System (CVSS). 

“JDBC Appender should use JndiManager when accessing JNDI. JNDI access should be controlled via a system property,” the flaw description explains.

“Related to CVE-2021-44832 where an attacker with permission to modify the logging configuration file can construct a malicious configuration using a JDBC Appender with a data source referencing a JNDI URI which can execute remote code.”

The original Log4j vulnerability, tracked as CVE-2021-44228, was given the nickname Log4Shell. It allowed crooks to run virtually any code remotely and, given the widespread use of Log4j, quickly became a nightmare for corporations and government organizations around the world.

Jen Easterly, Director of the US Cybersecurity and Infrastructure Security Agency (CISA), described it as “one of the most serious” flaws she’s seen in her entire career, “if not the most serious”.

  • You might also want to check out our list of the best antivirus solutions around today

Via BleepingComputer

  • Trending
  • Comments
  • Latest
Stuttgart vs Hoffenheim LIVE: Bundesliga team news and latest build-up

Stuttgart vs Hoffenheim LIVE: Bundesliga team news and latest build-up

9ef8d273 72f0 4378 a62f 88aec75c013a little sleepies – TodayHeadline

Little Sleepies Is Having A Rare Sale — & Tons Of Adorable, Celeb-Loved Styles Are Up To 65% Off

64724f6e085acb0018fec740 – TodayHeadline

Ex-Lululemon Staffers Say They Were Fired for Reporting Robbery to Police

Antibiotic Destroying Bacteria Concept Illustration – TodayHeadline

Helps Find New Antibiotic Drug To Combat Drug-Resistant Infections

4772742 – TodayHeadline

PIP: The conditions that are most likely to qualify a person for £691 a month | Personal Finance | Finance

Jon Favreau Robert Downey Jr. in Iron Man getty everett H 2023 – TodayHeadline

Jon Favreau Says Robert Downey Jr. Was in Talks for Fantastic Four – The Hollywood Reporter

Hormone Predicts Ability To Maintain Weight Loss – TodayHeadline

Unraveling the Secret of Maintaining Weight-Loss: Role of Neurotensin Unveiled

Byron Baes star Jade Kevin Foster strips down for sizzling – TodayHeadline

Byron Baes star Jade Kevin Foster strips down for sizzling Playboy campaign

PopularStories

4772742 – TodayHeadline
Finance News

PIP: The conditions that are most likely to qualify a person for £691 a month | Personal Finance | Finance

Jon Favreau Robert Downey Jr. in Iron Man getty everett H 2023 – TodayHeadline
Movie

Jon Favreau Says Robert Downey Jr. Was in Talks for Fantastic Four – The Hollywood Reporter

Hormone Predicts Ability To Maintain Weight Loss – TodayHeadline
Science News & Society

Unraveling the Secret of Maintaining Weight-Loss: Role of Neurotensin Unveiled

Byron Baes star Jade Kevin Foster strips down for sizzling – TodayHeadline
Entertainment News

Byron Baes star Jade Kevin Foster strips down for sizzling Playboy campaign

About Us

Todayheadline the independent news and topics discovery
A home-grown and independent news and topic aggregation . displays breaking news linking to news websites all around the world.

Follow Us

Latest News

4772742 – TodayHeadline

PIP: The conditions that are most likely to qualify a person for £691 a month | Personal Finance | Finance

Jon Favreau Robert Downey Jr. in Iron Man getty everett H 2023 – TodayHeadline

Jon Favreau Says Robert Downey Jr. Was in Talks for Fantastic Four – The Hollywood Reporter

Hormone Predicts Ability To Maintain Weight Loss – TodayHeadline

Unraveling the Secret of Maintaining Weight-Loss: Role of Neurotensin Unveiled

4772742 – TodayHeadline

PIP: The conditions that are most likely to qualify a person for £691 a month | Personal Finance | Finance

Jon Favreau Robert Downey Jr. in Iron Man getty everett H 2023 – TodayHeadline

Jon Favreau Says Robert Downey Jr. Was in Talks for Fantastic Four – The Hollywood Reporter

Hormone Predicts Ability To Maintain Weight Loss – TodayHeadline

Unraveling the Secret of Maintaining Weight-Loss: Role of Neurotensin Unveiled

  • Real Estate
  • Parenting
  • Cooking
  • NFL Games On TV Today
  • Travel and Tourism
  • Home & Garden
  • Pets
  • Privacy & Policy
  • Contact
  • About

© 2023 All rights are reserved Today headline

No Result
View All Result
  • Real Estate
  • Parenting
  • Cooking
  • NFL Games On TV Today
  • Travel and Tourism
  • Home & Garden
  • Pets
  • Privacy & Policy
  • Contact
  • About

© 2023 All rights are reserved Today headline