Page 1 of 1

GV-SFW-2022-01 Notice of Log4j Vulnerabilities - 20220111

Posted: January 11th, 2022, 1:56 pm
by support
Advisory ID: GV-SFW-2022-01
CVE ID: CVE-2021-44228, CVE-2021-45046
Status: Completed



GeoVision's Official Notice: 01-06-2022
Regarding the Apache Foundation Log4j Vulnerability (CVE-2021-44228) and Log4j version 2.15.0 Vulnerability (CVE-2021-45046)

Recently GeoVision is aware of publicly-reported vulnerabilities regarding an open-source Java logging library developed by the Apache Foundation called Log4j (CVE-2021-44228) and Log4j version 2.15.0 (CVE-2021-45046)

Our R&D team has launched investigations and run analysis upon receiving the above information, which is concluded as below: GeoVision’s latest version of Software, Firmware, Mobile App and Hardware products, listed in the table https://s3.amazonaws.com/geovision_down ... _Table.pdf, are not affected by those vulnerabilities.

We encourage customers to update your products to the latest version and will keep you informed of further developments if there are any changes. If you have further questions, please feel free to contact us.
Notice_Letter_Log4j.pdf
(79.53 KiB) Downloaded 376 times