<?xml-stylesheet type="text/xsl" href="https://sugarclub.sugarcrm.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>SugarCRM Information Regarding Log4j Vulnerability</title><link>/engage/b/sugar-news/posts/sugarcrm-information-regarding-log4j-vulnerability</link><description>Like many software companies around the world, SugarCRM recently became aware of a critical vulnerability in the Log4j software developed by Apache Software Foundation, which is generally used in web server applications. The zero-day attack exploitin</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: SugarCRM Information Regarding Log4j Vulnerability</title><link>https://sugarclub.sugarcrm.com/engage/b/sugar-news/posts/sugarcrm-information-regarding-log4j-vulnerability</link><pubDate>Thu, 20 Jan 2022 17:45:53 GMT</pubDate><guid isPermaLink="false">5c521d64-519d-47a6-9065-134618b211bf:f6f1423e-cf79-449a-aa02-b50be00ccaa9</guid><dc:creator>Nathan Romine</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;Several software components inside of the SugarCRM cloud platform were vulnerable to the log4j vulnerability, however, no client or public facing systems were vulnerable. To be clear, the SugarCRM platform did NOT have any publicly facing infrastructure that was vulnerable, and immediate and continuous monitoring of the environment has shown no attempts or compromises of previously vulnerable software components.&lt;/p&gt;
&lt;p&gt;All known configurations, patches, and remediations were in place by December 13th, and all continuously released log4j patches or remediations are tested and put in place as they become available from 3rd parties.&lt;/p&gt;&lt;img src="https://sugarclub.sugarcrm.com/aggbug?PostID=2307&amp;AppID=12&amp;AppType=Weblog&amp;ContentType=0" width="1" height="1"&gt;</description></item><item><title>RE: SugarCRM Information Regarding Log4j Vulnerability</title><link>https://sugarclub.sugarcrm.com/engage/b/sugar-news/posts/sugarcrm-information-regarding-log4j-vulnerability</link><pubDate>Thu, 30 Dec 2021 08:13:02 GMT</pubDate><guid isPermaLink="false">5c521d64-519d-47a6-9065-134618b211bf:f6f1423e-cf79-449a-aa02-b50be00ccaa9</guid><dc:creator>Saad Azad</dc:creator><slash:comments>1</slash:comments><description>&lt;p&gt;Hi&lt;span&gt;&amp;nbsp;&lt;/span&gt;Nathan,&lt;/p&gt;
&lt;p&gt;There are further Apache Log4j Vulnerability tracked as (CVE-2021-44832) and the patches released earlier were found to be insufficient. Do you have any update on the same?&lt;br /&gt;&lt;br /&gt;Thanks&lt;/p&gt;&lt;img src="https://sugarclub.sugarcrm.com/aggbug?PostID=2307&amp;AppID=12&amp;AppType=Weblog&amp;ContentType=0" width="1" height="1"&gt;</description></item><item><title>RE: SugarCRM Information Regarding Log4j Vulnerability</title><link>https://sugarclub.sugarcrm.com/engage/b/sugar-news/posts/sugarcrm-information-regarding-log4j-vulnerability</link><pubDate>Thu, 23 Dec 2021 05:23:13 GMT</pubDate><guid isPermaLink="false">5c521d64-519d-47a6-9065-134618b211bf:f6f1423e-cf79-449a-aa02-b50be00ccaa9</guid><dc:creator>Manish kumar</dc:creator><slash:comments>1</slash:comments><description>&lt;p&gt;He Team,&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;We are Using SugarCRM 9.XX EP is this worried for Us ? Or any update or action required ?&lt;/p&gt;&lt;img src="https://sugarclub.sugarcrm.com/aggbug?PostID=2307&amp;AppID=12&amp;AppType=Weblog&amp;ContentType=0" width="1" height="1"&gt;</description></item><item><title>RE: SugarCRM Information Regarding Log4j Vulnerability</title><link>https://sugarclub.sugarcrm.com/engage/b/sugar-news/posts/sugarcrm-information-regarding-log4j-vulnerability</link><pubDate>Fri, 17 Dec 2021 19:27:12 GMT</pubDate><guid isPermaLink="false">5c521d64-519d-47a6-9065-134618b211bf:f6f1423e-cf79-449a-aa02-b50be00ccaa9</guid><dc:creator>Ken McCartney</dc:creator><slash:comments>1</slash:comments><description>&lt;p&gt;According to documentation on supported platforms, version 11 of sugarcrm only supports elasticsearch version 7.9&amp;nbsp;&lt;a href="https://support.sugarcrm.com/Resources/Supported_Platforms/"&gt;https://support.sugarcrm.com/Resources/Supported_Platforms/&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Will sugarcrm v11 function with elasticsearch v7.16.1 ?&lt;/p&gt;
&lt;p&gt;Thanks.&lt;/p&gt;&lt;img src="https://sugarclub.sugarcrm.com/aggbug?PostID=2307&amp;AppID=12&amp;AppType=Weblog&amp;ContentType=0" width="1" height="1"&gt;</description></item></channel></rss>