Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Is ccoewiki.tapestry.com application using log4j utility?

Gautam Ghosh December 15, 2021

Hello ,

We are aware of the recently disclosed security issue relating to the open-source Apache “Log4j2" utility (CVE-2021-44228).  

Just wanted to check if our ccoewiki application is impacted or not? If impacted please suggest remediation steps ,  and let me know if you have any questions. 

 

Thanks

Gautam

1 answer

1 accepted

1 vote
Answer accepted
Dirk Ronsmans
Community Champion
December 15, 2021

Hi @Gautam Ghosh ,

Regarding the Atlassian products you can find more information here 

https://community.atlassian.com/t5/Trust-Security-articles/Atlassian-s-Response-to-Log4j-CVE-2021-44228/ba-p/1886598#M134

the short answer is, they are not impacted or the impact has been mitigated on cloud.

Since you are looking for information regarding a specific application (I can't figure out which one exactly and if it is a public or private one) you would be best to contact the vendor of the app directly.

Gautam Ghosh December 15, 2021

Hi Dirk Ronsmans ,

Thank you very much for the quick response.  It has been very helpful .

Gautam

Gautam Ghosh December 15, 2021

Hi Dirk ,

One other question is for the  components , running on  AWS Cloud EC2 ,   for which the information are given below.  Any security issues related to Log4j?

Thanks

Gautam

 

View System Information
Confluence Information
System Date Wednesday, December 15, 2021
System Time 6:55:12 PM
System Installation Date Tuesday, April 2, 2019
Uptime 22 months, 18 days, 15 hours, 48 minutes, 14 seconds
Confluence Version 6.15.1
Build Number 8100
Server Base URL https://ccoewiki.tapestry.com
Confluence Home /var/atlassian/application-data/confluence
Server ID BYEA-21CP-MGA2-9AWS
Support Entitlement Number SEN-13855151
Access Mode READ_WRITE
Daily XML Backup Enabled
Environment Variables
PATH /usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin
CATALINA_PID /opt/atlassian/confluence/work/catalina.pid
CONF_USER confluence
CATALINA_OPTS -XX:ReservedCodeCacheSize=256m -XX:+UseCodeCacheFlushing -Dconfluence.context.path= -Datlassian.plugins.startup.options='' -Dorg.apache.tomcat.websocket.DEFAULT_BUFFER_SIZE=32768 -Dsynchrony.enable.xhr.fallback=true -Xms1024m -Xmx1024m -XX:+UseG1GC -Datlassian.plugins.enable.wait=300 -Djava.awt.headless=true -XX:G1ReservePercent=20 -Xloggc:/opt/atlassian/confluence/logs/gc-2020-01-15_03-05-58.log -XX:+UseGCLogFileRotation -XX:NumberOfGCLogFiles=5 -XX:GCLogFileSize=2M -XX:-PrintGCDetails -XX:+PrintGCDateStamps -XX:-PrintTenuringDistribution
JDK_JAVA_OPTIONS --add-opens=java.base/java.lang=ALL-UNNAMED --add-opens=java.base/java.io=ALL-UNNAMED --add-opens=java.rmi/sun.rmi.transport=ALL-UNNAMED
OLDPWD /opt/atlassian/confluence
LANG en_US.UTF-8
JRE_HOME /opt/atlassian/confluence/jre/
START_CONFLUENCE_JAVA_OPTS -Datlassian.plugins.startup.options=''
PWD /opt/atlassian/confluence/bin
CONFLUENCE_CONTEXT_PATH
SHLVL 4
_ /opt/atlassian/confluence/jre//bin/java
Java Runtime Environment
Operating System Linux 4.14.106-97.85.amzn2.x86_64
OS Architecture amd64
Application Server Apache Tomcat/9.0.12
Servlet Version 4.0
Java Version 1.8.0_192
Java Vendor Oracle Corporation
JVM Version 1.8
JVM Vendor Oracle Corporation
JVM Implementation Version 25.192-b12
Java Runtime OpenJDK Runtime Environment
Java VM OpenJDK 64-Bit Server VM
Java Runtime Arguments -Djava.util.logging.config.file=/opt/atlassian/confluence/conf/logging.properties -Djava.util.logging.manager=org.apache.juli.ClassLoaderLogManager -Djdk.tls.ephemeralDHKeySize=2048 -Djava.protocol.handler.pkgs=org.apache.catalina.webresources -Dorg.apache.catalina.security.SecurityListener.UMASK=0027 -XX:ReservedCodeCacheSize=256m -XX:+UseCodeCacheFlushing -Dconfluence.context.path= -Datlassian.plugins.startup.options= -Dorg.apache.tomcat.websocket.DEFAULT_BUFFER_SIZE=32768 -Dsynchrony.enable.xhr.fallback=true -Xms1024m -Xmx1024m -XX:+UseG1GC -Datlassian.plugins.enable.wait=300 -Djava.awt.headless=true -XX:G1ReservePercent=20 -Xloggc:/opt/atlassian/confluence/logs/gc-2020-01-15_03-05-58.log -XX:+UseGCLogFileRotation -XX:NumberOfGCLogFiles=5 -XX:GCLogFileSize=2M -XX:-PrintGCDetails -XX:+PrintGCDateStamps -XX:-PrintTenuringDistribution -Dignore.endorsed.dirs= -Dcatalina.base=/opt/atlassian/confluence -Dcatalina.home=/opt/atlassian/confluence -Djava.io.tmpdir=/opt/atlassian/confluence/temp
Application Server Working Directory /opt/atlassian/confluence/bin
Temp Directory /opt/atlassian/confluence/temp
User Name confluence
System Language en
System Timezone Etc/UTC
System Favorite Color Gold
System Favorite Character Mr Nobody
Filesystem Encoding UTF-8

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events