GV-SFW-2022-01 Notice of Log4j Vulnerabilities - 20220111

Security Advisory Notices
Post Reply
support
Posts: 420
Joined: December 27th, 2014, 8:37 am

GV-SFW-2022-01 Notice of Log4j Vulnerabilities - 20220111

Post by support »

Advisory ID: GV-SFW-2022-01
CVE ID: CVE-2021-44228, CVE-2021-45046
Status: Completed



GeoVision's Official Notice: 01-06-2022
Regarding the Apache Foundation Log4j Vulnerability (CVE-2021-44228) and Log4j version 2.15.0 Vulnerability (CVE-2021-45046)

Recently GeoVision is aware of publicly-reported vulnerabilities regarding an open-source Java logging library developed by the Apache Foundation called Log4j (CVE-2021-44228) and Log4j version 2.15.0 (CVE-2021-45046)

Our R&D team has launched investigations and run analysis upon receiving the above information, which is concluded as below: GeoVision’s latest version of Software, Firmware, Mobile App and Hardware products, listed in the table https://s3.amazonaws.com/geovision_down ... _Table.pdf, are not affected by those vulnerabilities.

We encourage customers to update your products to the latest version and will keep you informed of further developments if there are any changes. If you have further questions, please feel free to contact us.
Notice_Letter_Log4j.pdf
(79.53 KiB) Downloaded 4 times
Post Reply