Is ccoewiki.tapestry.com application using log4j utility?

Gautam Ghosh December 15, 2021

Hello ,

We are aware of the recently disclosed security issue relating to the open-source Apache “Log4j2" utility (CVE-2021-44228).  

Just wanted to check if our ccoewiki application is impacted or not? If impacted please suggest remediation steps ,  and let me know if you have any questions. 

 

Thanks

Gautam

1 answer

1 accepted

1 vote
Answer accepted
Dirk Ronsmans
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
December 15, 2021

Hi @Gautam Ghosh ,

Regarding the Atlassian products you can find more information here 

https://community.atlassian.com/t5/Trust-Security-articles/Atlassian-s-Response-to-Log4j-CVE-2021-44228/ba-p/1886598#M134

the short answer is, they are not impacted or the impact has been mitigated on cloud.

Since you are looking for information regarding a specific application (I can't figure out which one exactly and if it is a public or private one) you would be best to contact the vendor of the app directly.

Gautam Ghosh December 15, 2021

Hi Dirk Ronsmans ,

Thank you very much for the quick response.  It has been very helpful .

Gautam

Gautam Ghosh December 15, 2021

Hi Dirk ,

One other question is for the  components , running on  AWS Cloud EC2 ,   for which the information are given below.  Any security issues related to Log4j?

Thanks

Gautam

 

View System Information
Confluence Information
System Date Wednesday, December 15, 2021
System Time 6:55:12 PM
System Installation Date Tuesday, April 2, 2019
Uptime 22 months, 18 days, 15 hours, 48 minutes, 14 seconds
Confluence Version 6.15.1
Build Number 8100
Server Base URL https://ccoewiki.tapestry.com
Confluence Home /var/atlassian/application-data/confluence
Server ID BYEA-21CP-MGA2-9AWS
Support Entitlement Number SEN-13855151
Access Mode READ_WRITE
Daily XML Backup Enabled
Environment Variables
PATH /usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin
CATALINA_PID /opt/atlassian/confluence/work/catalina.pid
CONF_USER confluence
CATALINA_OPTS -XX:ReservedCodeCacheSize=256m -XX:+UseCodeCacheFlushing -Dconfluence.context.path= -Datlassian.plugins.startup.options='' -Dorg.apache.tomcat.websocket.DEFAULT_BUFFER_SIZE=32768 -Dsynchrony.enable.xhr.fallback=true -Xms1024m -Xmx1024m -XX:+UseG1GC -Datlassian.plugins.enable.wait=300 -Djava.awt.headless=true -XX:G1ReservePercent=20 -Xloggc:/opt/atlassian/confluence/logs/gc-2020-01-15_03-05-58.log -XX:+UseGCLogFileRotation -XX:NumberOfGCLogFiles=5 -XX:GCLogFileSize=2M -XX:-PrintGCDetails -XX:+PrintGCDateStamps -XX:-PrintTenuringDistribution
JDK_JAVA_OPTIONS --add-opens=java.base/java.lang=ALL-UNNAMED --add-opens=java.base/java.io=ALL-UNNAMED --add-opens=java.rmi/sun.rmi.transport=ALL-UNNAMED
OLDPWD /opt/atlassian/confluence
LANG en_US.UTF-8
JRE_HOME /opt/atlassian/confluence/jre/
START_CONFLUENCE_JAVA_OPTS -Datlassian.plugins.startup.options=''
PWD /opt/atlassian/confluence/bin
CONFLUENCE_CONTEXT_PATH
SHLVL 4
_ /opt/atlassian/confluence/jre//bin/java
Java Runtime Environment
Operating System Linux 4.14.106-97.85.amzn2.x86_64
OS Architecture amd64
Application Server Apache Tomcat/9.0.12
Servlet Version 4.0
Java Version 1.8.0_192
Java Vendor Oracle Corporation
JVM Version 1.8
JVM Vendor Oracle Corporation
JVM Implementation Version 25.192-b12
Java Runtime OpenJDK Runtime Environment
Java VM OpenJDK 64-Bit Server VM
Java Runtime Arguments -Djava.util.logging.config.file=/opt/atlassian/confluence/conf/logging.properties -Djava.util.logging.manager=org.apache.juli.ClassLoaderLogManager -Djdk.tls.ephemeralDHKeySize=2048 -Djava.protocol.handler.pkgs=org.apache.catalina.webresources -Dorg.apache.catalina.security.SecurityListener.UMASK=0027 -XX:ReservedCodeCacheSize=256m -XX:+UseCodeCacheFlushing -Dconfluence.context.path= -Datlassian.plugins.startup.options= -Dorg.apache.tomcat.websocket.DEFAULT_BUFFER_SIZE=32768 -Dsynchrony.enable.xhr.fallback=true -Xms1024m -Xmx1024m -XX:+UseG1GC -Datlassian.plugins.enable.wait=300 -Djava.awt.headless=true -XX:G1ReservePercent=20 -Xloggc:/opt/atlassian/confluence/logs/gc-2020-01-15_03-05-58.log -XX:+UseGCLogFileRotation -XX:NumberOfGCLogFiles=5 -XX:GCLogFileSize=2M -XX:-PrintGCDetails -XX:+PrintGCDateStamps -XX:-PrintTenuringDistribution -Dignore.endorsed.dirs= -Dcatalina.base=/opt/atlassian/confluence -Dcatalina.home=/opt/atlassian/confluence -Djava.io.tmpdir=/opt/atlassian/confluence/temp
Application Server Working Directory /opt/atlassian/confluence/bin
Temp Directory /opt/atlassian/confluence/temp
User Name confluence
System Language en
System Timezone Etc/UTC
System Favorite Color Gold
System Favorite Character Mr Nobody
Filesystem Encoding UTF-8

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events