Skip to end of metadata
Go to start of metadata

Problem

A newly revealed vulnerability impacting Apache Log4j 2 versions 2.0 to 2.14.1 was disclosed on GitHub on 9 December 2021 and registered as CVE-2021-44228 with the highest severity rating.

Log4j is an open-source, Java-based logging utility widely used by enterprise applications and cloud services.

By utilizing this vulnerability, a remote attacker could take control of the affected system.

Checkmk is aware of the vulnerability and has completed verification that this issue does not affect checkmk itself and the checkmk appliance.