A serious vulnerability in the Java software Log4j now also has an impact on the municipalities in NRW and the Ruhr area.
Dortmund — a vulnerability in the Java library Log4j of the US manufacturer Apache is currently for massive problems worldwide. The Federal Office for Safety in Information Technology (BSI) suggested the vulnerability as an extremely critical — the highest of the four possible warning levels. Also, cities in North Rhine-Westphalia now report problems, such as the Corona Dashboards.
NRW: Vulnerability in Log4j is evaluated by the BSI as extremely critical
Update, Wednesday (December 15), 15:20: In addition to Essen, the circle Anna problems reported by the vulnerability in the Java software Log4j. Due to the risk of security, the internet connection to the freeway federal office was disturbed, the city reports today. The online approval portal of the Anna circle is therefore unavailable for all internet-based approval processes at the moment. How long the disorder will take is unclear. In urgent cases, citizens should personally go to the admissions in Anna or Linen.
First message, Tuesday (December 14), 20:20: The Log4Shell was discovered Software Sweat sheet at the beginning of December. It allows Cyber criminals according to BSI to make entries on a destination server and thus execute damage or even to take over the whole system. Worldwide, a billion computers could be affected on which the program Log4j is running.
Software manufacturers have been trying for days to conclude as extremely critical vulnerability with patches. So far, it was unclear to how internet users are affected by the Java breakdown (read all digital news on Java software).
NRW: Vulnerability in Log4j also restricts city
Meanwhile, cities in the Ruhr area also report problems by Log4j. For example, the City of Essen reported on Tuesday (14 December) that various online services are currently restricted.
Underneath, in the city, there are food applications in the geoporedal or the Corona Dashboard. The official map and the cadastral information is also affected. When the services concerned are again reachable, should not be estimated.
NRW: What do consumers need to consider because of the Log4j weak spot?
According to BSI, the vulnerability Log4Shell represents the greatest danger for the operators of servers and data centers. If the Java program Log4j is also carried out on private computers, but consumers can also be affected.
But: Even if not, users can balance damage by stolen their data, exercising important services or infected their systems, warns the BSI.
If software and IT manufacturers provide updates for programs or operating systems, they should be installed immediately, the Federal Office advises.
Category list picture: © Matthias Balk / DPA
Comments
Post a Comment