WinActor FAQ

FAQ

  • 質問

    Is there any security impact of the Apache Log4j vulnerability (CVE-2021-44228) on WinActor products?

  • 回答

    WinActor products are NOT affected by the vulnerability of Java log module (Apache Log4j), The details are as follows.

    Products that do not use Apache Log4j
    The following products do not use Apache Log4j (not included in the package). Therefore, they are not affected by this issue.
       WinActor Ver.7
       WinActor Talk Option
       WinActor official website

    Products using Apache Log4j 1.x
    Log4j 1.x is used for the following products.
       WinActor Ver.5: Log4j 1.2.16
       WinActor Ver.6: Log4j 1.2.16

    JPCERT has reported that this version(Apache Log4j 1.x) has no vulnerability.

    Products using Apache Log4j 2.x
    Apache Log4j 2.x is used for the following products.
    -WinActor Brain Cloud Library: Log4j 2.14.1

    In this case, Log4j-api is used, but NOT Log4j-core. Therefore, the product is not related to the description in JPCERT and is not affected.

    • FAQ No:ENG00434
    • Updated Date:2022/03/31
  • Is this feedback helpful?

Powered by MatchWeb