Union flag call 0330 660 0255status support
log in
  • Heart Internet mobile logo
  • Heart Internet Logo
  • Reseller Hosting
  • Premium Hosting
  • Web Hosting
  • VPS
  • Dedicated Servers
  • More

For account and billing queries call our helpline
0330 660 0255

For technical issues relating to your hosting please use our Support database



For information on the status of the Heart servers please use our status page

Heart Internet Support Database
  • Get support
  • Suggest a question
All Categories
Expand
Category
Accounts and Billing (50)
Expand
Category
Add-Ons (85)
Expand
Category
cPanel Web Hosting (31)
Expand
Category
Domain Names (199)
Expand
Category
Email Hosting (147)
Expand
Category
Managed WordPress (284)
Collapse
Category
Reseller Hosting (154)
empty
Category
Domain Names (12)
empty
Category
HostPay (39)
empty
Category
Other (5)
empty
Category
Reseller Pro (26)
Expand
Category
Servers (159)
Expand
Category
Web Hosting (570)
Home » Categories » Multiple Categories

Log4j Flaw - Frequently Asked Questions

Article Number: 1872 | Rating: Unrated | Last Updated: Thu, Dec 16, 2021 at 11:30 AM

This article will list the most frequently asked questions related to the Log4j flaw.

What is the Log4j flaw?

In December 2021, cybersecurity researchers highlighted an industry-wide vulnerability within the Apache Log4j component: CVE-2021-44228 .

Although we have taken the necessary steps and have patched our managed products (i.e. Shared Web Hosting, cPanel Hosting, Premium Hosting), this vulnerability may affect Java-based applications within unmanaged products such as Dedicated Hosting and VPS.

What actions do I need to perform?

If you don’t have any Java-based applications on your server, then you won’t need to take any actions. Furthermore, Plesk and WHM/cPanel software that is provisioned with our VPS’ will not be affected by this vulnerability, since the affected components are not installed by default.

If, however, you do have any Java-based applications that use the Log4j utility, or if you have manually installed the ‘ cpanel-dovecot-solr ’ plugin into your cPanel software, you will need to update Log4j within your VPS and/or Dedicated Server package to version 2.16.0 as soon as possible . Since these are unmanaged services, you will be responsible for its security patches. You can download the latest version of Log4j from Apache’s website .

If you have any of the following products with us, then you won’t need to perform any actions:

  • cPanel Hosting
  • Premium Hosting
  • WordPress Hosting

How can I tell what version of Log4j I have?

You can verify what version of Log4j you’re running by using tools such as syft and grype , both of which can be downloaded from GitHub.

I need further guidance – what should I do?

If you need assistance or have any further questions, please visit the official Security Vulnerabilities page on Apache’s website.

Posted - Wed, Dec 15, 2021 at 6:58 PM.
Filed Under: cPanel Web Hosting, Reseller Hosting, Server Managment, Software, Web Hosting, Website Problems
0 (0)
Article Rating (No Votes)
Rate this article
  • Icon PrinterPrint Article
  • Icon EmailEmail Article to Friend
  • Icon PDFExport to PDF
Related Articles
If I’ve bought my domain from another registrar, how can I host my website with you?
Added on Tue, Mar 10, 2015
What does this website status code mean?
Added on Wed, Apr 1, 2015
Why can’t I connect to my site using FTP?
Added on Fri, Mar 13, 2015
How do I order an SSL Certificate?
Added on Tue, Dec 15, 2020
‘Connection Is Not Private’ on your website
Added on Tue, Jun 15, 2021
 
Heart Internet Logo
Services
  • Domain Names
  • Web Hosting
  • Premium Hosting
  • Reseller Hosting
  • More
  • Virtual Private Servers
  • Dedicated Servers
  • Sign Up
Company
  • About Heart Internet
  • Our Blog
  • Support
  • Our Awards
  • More
  • Careers
  • Contact Us
  • Testimonials and Reviews
Community
  • Affiliate Program
  • Events We Sponsor
© 2016 Heart Internet Ltd. All rights reserved.
Terms and conditions Privacy Policy Sitemap
Heart Internet Logo