Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-68mr-468g-4wmg

Опубликовано: 20 мая 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A memory corruption vulnerability in Fluent Bit versions 2.0.7 thru 3.0.3. This issue lies in the embedded http server’s parsing of trace requests and may result in denial of service conditions, information disclosure, or remote code execution.

A memory corruption vulnerability in Fluent Bit versions 2.0.7 thru 3.0.3. This issue lies in the embedded http server’s parsing of trace requests and may result in denial of service conditions, information disclosure, or remote code execution.

EPSS

Процентиль: 98%
0.28309
Средний

9.8 Critical

CVSS3

Дефекты

CWE-122
CWE-787

Связанные уязвимости

CVSS3: 9.8
nvd
около 2 лет назад

A memory corruption vulnerability in Fluent Bit versions 2.0.7 thru 3.0.3. This issue lies in the embedded http server’s parsing of trace requests and may result in denial of service conditions, information disclosure, or remote code execution.

CVSS3: 9.8
msrc
около 2 лет назад

Описание отсутствует

CVSS3: 9.8
fstec
больше 2 лет назад

Уязвимость встроенного HTTP-сервера инструмента для сбора и обработки логов Fluent Bit, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 98%
0.28309
Средний

9.8 Critical

CVSS3

Дефекты

CWE-122
CWE-787