Advisory ID: GV-SFW-2022-01
CVE ID: CVE-2021-44228, CVE-2021-45046
Status: Completed
GeoVision's Official Notice: 01-06-2022
Regarding the Apache Foundation Log4j Vulnerability (CVE-2021-44228) and Log4j version 2.15.0 Vulnerability (CVE-2021-45046)
Recently GeoVision is aware of publicly-reported vulnerabilities regarding an open-source Java logging library developed by the Apache Foundation called Log4j (CVE-2021-44228) and Log4j version 2.15.0 (CVE-2021-45046)
Our R&D team has launched investigations and run analysis upon receiving the above information, which is concluded as below: GeoVision’s latest version of Software, Firmware, Mobile App and Hardware products, listed in the table https://s3.amazonaws.com/geovision_down ... _Table.pdf, are not affected by those vulnerabilities.
We encourage customers to update your products to the latest version and will keep you informed of further developments if there are any changes. If you have further questions, please feel free to contact us.