Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

A zero-day exploit has been found in the “Apache log4j” Java Component. The exploit allows remote code execution. This security issue is logged as “CVE-2021-44228” and “CVE-2021-45046” for version 2.15 of log4j. It has the nickname “Log4Shell”.

The exploit uses the Java Naming and Directory Interface (JNDI).

Is PeopleSync affected?

\uD83C\uDF31 Solution

...