Copy link to clipboard
Copied
Hi,
Regarding the vulnerability CVE-2021-44228, I would like to know if the Adobe CC desktop app or any of the apps that can be installed with it make use of the vulnerable Log4j package.
If so, what steps do you recommend for mitigation?
Thank you very much for your help.
Thank you, everyone, for your interest and concern regarding the recently discovered Log4j vulnerability. For information on security issues related to the Apache Log4j 2 library and how it affects Adobe software and services, please bookmark and review https://helpx.adobe.com/security/products/log4j-2-advisory.html.
This is a developing situation, so please follow the guidance at the bottom and contact your dedicated Customer Success Manager (CSM), Technical Account Manager (TAM), or contact
...Copy link to clipboard
Copied
For older versions, please reach out to your dedicated Customer Success Manager (CSM), Technical Account Manager (TAM) or Adobe Customer Care: https://helpx.adobe.com/contact.html
Copy link to clipboard
Copied
Will there be a patch for this older version ?
By @eh22435856akz6
No. CS5.5 is 10 year old software. Support for it ended several years ago.
That means no more patches, bugfixes or security updates.
If you want to run secure software which is updated and patched when new security issues such as Log4j arise, you'll have to subscribe to an Adobe Cloud plan.