cancel
Showing results for 
Search instead for 
Did you mean: 

[CVE-2021-44228] Apache Log4j2 RCE

dawoon_lee
New Contributor II

Hello.

Our customer is running a Ruckus SmartZone (sz-100) controller.
The version of the controller is 5.1.1.0.598.


The customer asked if the SmartZone has the following this security vulnerabilities.

** Vulnerability: [CVE-2021-44228] Apache Log4j2 RCE

Thank you for your valuable answers to the above questions.

91 REPLIES 91

@ludia_it 

I can confirm this all other nodes I tested with 5.2 worked fine. We have some vSZ-E, vSZ-H and SZ104, but only one at 6.0.0.0.1331.

@vineet_nejawala @allan_grohe 

There should be a workaround added for 6.0.0.0.1331 that if you see this message repeating more then 5-10 minutes. Login in a new session and reload the node.

"Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up."

Else they will never come back.

@ludia_it @nick_nordberg thanks for sharing your experience with 6.0.0.0.1331!

@vineet_nejawala 
I have 3 vSZ clusters.
On the first node the services came up after few minutes as expected.

Here is the session output: 
node-1# service restart
Do you want to restart all services (or input 'no' to cancel)? [yes/no] yes
Restarting all services...
Process had been started before and running...
Wait for (Cassandra,Communicator,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Core,Courier,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm) up.
Wait for (Communicator,Core,Courier,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm) up.
Wait for (Communicator,Core,Courier,Mosquitto,NginX,ScgUniversalExporter,Switchm) up.
Wait for (Communicator,Core,Courier,Mosquitto,NginX,ScgUniversalExporter,Switchm) up.
Wait for (Communicator,Core,Courier,Mosquitto,NginX,ScgUniversalExporter,Switchm) up.
Wait for (Communicator,Core,Courier,Mosquitto,NginX,ScgUniversalExporter,Switchm) up.
Wait for (Communicator,Core,Courier,Mosquitto,NginX,ScgUniversalExporter,Switchm) up.
Wait for (Communicator,Core,Courier,Mosquitto,NginX,ScgUniversalExporter,Switchm) up.
Wait for (Communicator,Core,Courier,Mosquitto,NginX,ScgUniversalExporter,Switchm) up.
Wait for (Core,Mosquitto,NginX,ScgUniversalExporter) up.
Wait for (Core,Mosquitto,NginX,ScgUniversalExporter) up.
Wait for (Core,Mosquitto,NginX,ScgUniversalExporter) up.
Wait for (Core,Mosquitto,NginX,ScgUniversalExporter) up.
Wait for (Core,Mosquitto,NginX,ScgUniversalExporter) up.
Wait for (Core,Mosquitto,NginX,ScgUniversalExporter) up.
Wait for (Core,Mosquitto,NginX,ScgUniversalExporter) up.
Wait for (Core,NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
Wait for (NginX) up.
All services are up.
Successful operation

@vineet_nejawala 

The other node were stuck after restarting the services.

Eventually  I restarted it via another SSH session.


node-1l# service restart
Do you want to restart all services (or input 'no' to cancel)? [yes/no] yes
Restarting all services...
Process had been started before and running...
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.
Wait for (Cassandra,Communicator,Configurer,Core,Courier,ElasticSearch,Mosquitto,NginX,RabbitMQ,ScgUniversalExporter,Switchm,Web) up.

@roy_beiser This is exactly what I experienced when I upgraded my single dev node. It will be stuck there. Just do a reload in a separate cli window and it will work after restart

fine again. 

@roy_beiser

Is this too on 6.0 code ? Please confirm.

Best Regards

Vineet