Log4j software vulnerability: Major tech companies rush to fix software after US govt’s warning
Summary
Major global companies are facing pressure to fix what experts are calling one of the most serious software flaws in recent memory. The flaw in the Log4j software could allow hackers unfettered access to computer systems and has prompted an urgent warning by the US government’s cybersecurity agency. Microsoft Corp and Cisco Inc have published advisories about the flaw, and software developers released a fix late last week. “This is probably the worst security vulnerability in at least the last 10 years — maybe longer,” said Charles Carmakal, the chief technology officer for cybersecurity firm Mandiant Inc. “To be clear, this vulnerability poses a severe risk,” Jen Easterly, director of the US Cybersecurity and Infrastructure Security Agency, said in a statement Friday.