Latest News

Regarding the Apache Log4j Vulnerability (CVE-2021-44228)

2021.12.17
Notice

A vulnerability (CVE-2021-44228) enabling arbitrary code execution has been reported in Apache Log4j (version 2), one of Java's logging libraries.

 

Please rest assured that our services, mixhost and MillenVPN, have been confirmed to be unaffected by this vulnerability.

▼mixhost
https://mixhost.jp

▼MillenVPN
https://millenvpn.jp/

 

This vulnerability poses a risk that arbitrary code could be executed externally on servers running Apache Log4j by causing specific strings to be logged.
For details, please refer to the CVE below and the announcement from the Information-technology Promotion Agency, Japan (IPA).

▼CVE-2021-44228 – CVE
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-44228

▼Apache Log4j Vulnerability Countermeasures (CVE-2021-44228) – IPA/Information-technology Promotion Agency
https://www.ipa.go.jp/security/ciadr/vul/alert20211213.html

 

We would be grateful if you would continue to utilize our services.
We look forward to your continued support.