Logo Questions Linux Laravel Mysql Ubuntu Git Menu
 

log4shell exploit for Redis server

Tags:

redis

log4j

We are running redis server on EC2 instance.

i can see in many publications that Redis Server is vulnerable to the log4shell exploit, but can't see any documentation or any official about that.

What should I do in order to protect my redis server instance to be in-vulnerable for this exploit?

like image 754
Eyal Ch Avatar asked Dec 12 '21 08:12

Eyal Ch


1 Answers

Redis Server does not use Java and is therefore not impacted by this vulnerability.

See more here: https://redis.com/security/notice-apache-log4j2-cve-2021-44228/

like image 178
Guy Korland Avatar answered Oct 12 '22 19:10

Guy Korland