Jump to content

Java log4j


Arthur Haga

Recommended Posts

=================gr5 - google translate (this part of the forum is supposed to be in english) ==================

Dear Sir or Madam,

 

 

Last weekend an important vulnerability was revealed in a widely used Java tool (log4j).

Within the Haga, an inventory is now being made as soon as possible of which devices/applications are used by us (also from external suppliers) that may be sensitive to this.

 

The following Cura devices/applications are known to us, among others:

· Ultimate Maker 3

 

We have a number of questions, which we would like to have an answer to as soon as possible (ideally within 24 hours):

1. Does Ultimaker have an idea whether the above-mentioned devices/applications use log4j, and if so, which version?

2. If the devices/applications are sensitive, how soon will this be resolved by patching/update to version 2.15?

 

 

We would like to receive an answer from you shortly (before 16 Dec 21).

 

Arthur van der Mast

hague hospital

The Hague

 

=============== original =================

Dear Sir or Madam,

 

 

Afgelopen weekend is er een belangrijke kwetsbaarheid bekend geworden in een veel gebruikte Java-tool (log4j).

Binnen het Haga wordt er nu op zo kort mogelijke termijn geïnventariseerd welke apparaten/applicaties bij ons gebruikt worden (ook van externe leveranciers) die hier misschien gevoelig voor zijn.

 

Oa de volgende apparaten/applicaties van Cura zijn bij ons bekend:

·         Ultimaker 3

 

We hebben hierbij een aantal vragen, waar we graag zo snel mogelijk (idealiter binnen 24 uur) antwoord op willen hebben:

1.       Heeft Ultimaker in beeld of de hierboven genoemde apparaten/applicaties gebruik maken van log4j, en zo ja, welke versie?

2.       Als de apparaten/applicaties gevoelig zijn, op welke termijn zal dit verholpen zijn dmv patching/update naar versie 2.15?

 

 

Wij zouden graag op korte termijn (voor 16 dec 21) een antwoord van u willen hebben.

 

Arthur van der Mast

Hagaziekhuis

Den haag

 

  • Link to post
    Share on other sites

    JAVA is not used for the development of our printer firmware, CURA slicer, nor for the cloud applications (Digital Factory, Marketplace, Contributor portal, Account services, eLearning), so in no way our products are impacted by the Log4J vulnerability

    • Like 6
    Link to post
    Share on other sites

    Create an account or sign in to comment

    You need to be a member in order to leave a comment

    Create an account

    Sign up for a new account in our community. It's easy!

    Register a new account

    Sign in

    Already have an account? Sign in here.

    Sign In Now
    • Our picks

      • UltiMaker Cura 5.7 stable released
        Cura 5.7 is here and it brings a handy new workflow improvement when using Thingiverse and Cura together, as well as additional capabilities for Method series printers, and a powerful way of sharing print settings using new printer-agnostic project files! Read on to find out about all of these improvements and more. 
         
          • Like
        • 13 replies
      • S-Line Firmware 8.3.0 was released Nov. 20th on the "Latest" firmware branch.
        (Sorry, was out of office when this released)

        This update is for...
        All UltiMaker S series  
        New features
         
        Temperature status. During print preparation, the temperatures of the print cores and build plate will be shown on the display. This gives a better indication of the progress and remaining wait time. Save log files in paused state. It is now possible to save the printer's log files to USB if the currently active print job is paused. Previously, the Dump logs to USB option was only enabled if the printer was in idle state. Confirm print removal via Digital Factory. If the printer is connected to the Digital Factory, it is now possible to confirm the removal of a previous print job via the Digital Factory interface. This is useful in situations where the build plate is clear, but the operator forgot to select Confirm removal on the printer’s display. Visit this page for more information about this feature.
          • Like
        • 0 replies
    ×
    ×
    • Create New...