Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-52979

Опубликовано: 01 мая 2025
Источник: nvd
CVSS3: 6.5
CVSS3: 7.5
EPSS Низкий

Описание

Uncontrolled Resource Consumption in Elasticsearch while evaluating specifically crafted search templates with Mustache functions can lead to Denial of Service by causing the Elasticsearch node to crash.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:elastic:elasticsearch:*:*:*:*:*:*:*:*
Версия до 7.17.25 (исключая)
cpe:2.3:a:elastic:elasticsearch:*:*:*:*:*:*:*:*
Версия от 8.0.0 (включая) до 8.16.0 (исключая)

EPSS

Процентиль: 41%
0.00192
Низкий

6.5 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 6.5
ubuntu
9 месяцев назад

Uncontrolled Resource Consumption in Elasticsearch while evaluating specifically crafted search templates with Mustache functions can lead to Denial of Service by causing the Elasticsearch node to crash.

CVSS3: 4.3
redhat
9 месяцев назад

Uncontrolled Resource Consumption in Elasticsearch while evaluating specifically crafted search templates with Mustache functions can lead to Denial of Service by causing the Elasticsearch node to crash.

CVSS3: 6.5
debian
9 месяцев назад

Uncontrolled Resource Consumption in Elasticsearch while evaluating sp ...

CVSS3: 6.5
github
9 месяцев назад

Elasticsearch Uncontrolled Resource Consumption Vulnerability

EPSS

Процентиль: 41%
0.00192
Низкий

6.5 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-400