To get in touch about speaking at your event, email [email protected]

cje
press Dec 29, 2021 · VentureBeat

Patching Log4j to version 2.17.1 can probably wait

VentureBeat published an article in December 2021 examining the timing of Log4j patching priorities following critical vulnerability disclosures. Ellis offers perspective on the relative urgency of applying version 2.17.1 updates versus earlier critical patches for organizations managing vulnerability response.

Source description — as published

An article from December 2021 advising that patching Log4j to version 2.17.1, which fixed a less severe bug, could likely wait for organizations that had already applied earlier critical patches.