Arduino: Remote Code Execution A vulnerability has been found in Arduino which bundled a vulnerable version of log4j. arduino 2023-12-22 2023-12-22 830716 remote 1.8.19 1.8.19

Arduino is an open-source AVR electronics prototyping platform.

A vulnerability has been discovered in Arduino. Please review the CVE identifier referenced below for details.

Arduino bundles a vulnerable version of log4j that may lead to remote code execution.

There is no known workaround at this time.

All Arduino users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-embedded/arduino-1.8.19"
CVE-2021-4104 graaff graaff