# Zero-day-exploit in log4j2 which is part of elasticsearch

**URL:** https://discuss.elastic.co/t/zero-day-exploit-in-log4j2-which-is-part-of-elasticsearch/291439
**Category:** Elasticsearch
**Created:** [December 10, 2021, 3:46pm UTC](https://discuss.elastic.co/t/zero-day-exploit-in-log4j2-which-is-part-of-elasticsearch/291439 "2021-12-10T15:46:15Z")
**Posts on this page:** 1
**Showing post:** 64

<div class="post-metadata">

### Author: ![satishkovuru](https://avatars.discourse-cdn.com/v4/letter/s/e56c9b/32.png) [@satishkovuru](https://discuss.elastic.co/u/satishkovuru)
#### Post date: [December 14, 2021, 8:00pm UTC](https://discuss.elastic.co/t/zero-day-exploit-in-log4j2-which-is-part-of-elasticsearch/291439/64 "2021-12-14T20:00:08Z")

</div>

Can I download the latest jars of Log4j and palace it under below folders and start Elasticsearch?  
Because when I did this getting error and Elasticsearch is not starting.  
usr/share/Elasticsearch/lib/log4j-api-2.11.1.jar  
/usr/share/Elasticsearch/modules/repository-url/log4j-1.2-api-2.11.1.jar  
/usr/share/Elasticsearch/modules/x-pack-core/log4j-1.2-api-2.11.1.jar  
/usr/share/Elasticsearch/modules/x-pack-identity-provider/log4j-slf4j-impl-2.11.1.jar  
/usr/share/Elasticsearch/modules/x-pack-security/log4j-slf4j-impl-2.11.1.jar  
/usr/share/Elasticsearch/modules/vector-tile/log4j-slf4j-impl-2.11.1.jar

---

_[View the full topic](https://discuss.elastic.co/t/zero-day-exploit-in-log4j2-which-is-part-of-elasticsearch/291439)._
