Hello @UDAYA SRINIVASARAO KOTHAMASU ,
Thanks for the question and using MS Q&A platform.
Microsoft is aware of active exploitation of a critical Log4j Remote Code Execution vulnerability affecting various industry-wide Apache products. This vulnerability is in the open source Java component Log4J versions 2.0 through 2.14.1 (inclusive) and is documented in Apache CVE-2021-44228.
Azure HDInsight Engineering team has built a patch and currently applied it to all clouds. Public cloud patching is already completed. No customer action is needed at this time. The patch is applicable to both HDInsight 3.6 and 4.0 clusters.
Hope this will help. Please let us know if any further queries.
------------------------------
- Please don't forget to click on or upvote button whenever the information provided helps you. Original posters help the community find answers faster by identifying the correct answer. Here is how
- Want a reminder to come back and check responses? Here is how to subscribe to a notification
- If you are interested in joining the VM program and help shape the future of Q&A: Here is how you can be part of Q&A Volunteer Moderators