Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mm3m-5497-xggg

Опубликовано: 01 мая 2025
Источник: github
Github: Прошло ревью
CVSS3: 6.5

Описание

Elasticsearch Uncontrolled Resource Consumption Vulnerability

Uncontrolled Resource Consumption in Elasticsearch while evaluating specifically crafted search templates with Mustache functions can lead to Denial of Service by causing the Elasticsearch node to crash.

Пакеты

Наименование

org.elasticsearch:elasticsearch

maven
Затронутые версииВерсия исправления

< 7.17.25

7.17.25

Наименование

org.elasticsearch:elasticsearch

maven
Затронутые версииВерсия исправления

>= 8.0.0-alpha1, < 8.16.0

8.16.0

EPSS

Процентиль: 41%
0.00192
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 6.5
ubuntu
9 месяцев назад

Uncontrolled Resource Consumption in Elasticsearch while evaluating specifically crafted search templates with Mustache functions can lead to Denial of Service by causing the Elasticsearch node to crash.

CVSS3: 4.3
redhat
9 месяцев назад

Uncontrolled Resource Consumption in Elasticsearch while evaluating specifically crafted search templates with Mustache functions can lead to Denial of Service by causing the Elasticsearch node to crash.

CVSS3: 6.5
nvd
9 месяцев назад

Uncontrolled Resource Consumption in Elasticsearch while evaluating specifically crafted search templates with Mustache functions can lead to Denial of Service by causing the Elasticsearch node to crash.

CVSS3: 6.5
debian
9 месяцев назад

Uncontrolled Resource Consumption in Elasticsearch while evaluating sp ...

EPSS

Процентиль: 41%
0.00192
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-400