12-12-2021 05:51 PM
Our customer is running a Ruckus SmartZone (sz-100) controller.
The version of the controller is 18.104.22.168.598.
The customer asked if the SmartZone has the following this security vulnerabilities.
** Vulnerability: [CVE-2021-44228] Apache Log4j2 RCE
Thank you for your valuable answers to the above questions.
12-12-2021 07:30 PM
This vulnerability is really new and our Engineering has been notified about this issue to check if this vulnerability is affecting us and how we can mitigate the effects. We do understood this is a critical situation and we will update you with the information from our internal team. Below is our link where we will soon add our response.
12-13-2021 12:08 AM
12-13-2021 08:15 AM
Thanks for responding Vineet. We are looking forward to a Security Bulletin/Announcement update from the Ruckus team soon.
12-13-2021 08:32 AM
Thank you. The bulletin would be updated soon, so far we have been confirmed that code 3.6.2 is safe from this vulnerability and further is being tested.