YourKit and Zero-Day Vulnerability (CVE-2021-44228)

Questions about YourKit Java Profiler
Post Reply
Paul Cornelissen
Posts: 3
Joined: Mon Dec 13, 2021 11:08 pm

YourKit and Zero-Day Vulnerability (CVE-2021-44228)

Post by Paul Cornelissen »

I’ve been looking around on your site for any information regarding the recent zero-day vulnerability (CVE-2021-44228) against Apache Log4j (i.e. “Log4Shell”), but I have not found any announcements on the matter.

Could you please confirm if your product YourKit is indeed vulnerable? If it is, to you have a plan for remediation and a timeline?

Please let me know with high priority.

If a response has already been posted regarding this issue, please directly me to the proper URL.

Thanks you.
Anton Katilin
Posts: 6172
Joined: Wed Aug 11, 2004 8:37 am

Re: YourKit and Zero-Day Vulnerability (CVE-2021-44228)

Post by Anton Katilin »

YourKit products do not use Log4j.

YourKit products are no affected by CVE-2021-44228.
Post Reply