Log4j cPanel Apache Critical vulnerability

  • Sunday, 12th December, 2021
  • 13:43pm

Our team is currently investigating CVE-2021-44228, a critical vulnerability that’s affecting a Java logging package log4j which is used in a significant amount of software, including Apache, Apple iCloud, Steam, Minecraft and others. Our security team is actively monitoring the effects of this vulnerability.

At this point, we have not identified an impact to the HDWEBPROVIDER Platform, but our teams are monitoring activities to ensure all instances of our back-end are safe and will be taking appropriate action as needed.

The only cPanel service affected by the log4j vulnerability was the Dovecot Solr cPanel plugin which we are NOT using our servers. We already did not recommend that plugin because of its higher resource usage for no real benefits to IMAP searches. 

UPDATE
cPanel has already put out a patch for this as of Friday and our servers and cloud network is fully secured against this vulnerability. 

« Back

Powered by WHMCompleteSolution