CVE-2024-52979
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
Uncontrolled Resource Consumption in Elasticsearch while evaluating specifically crafted search templates with Mustache functions can lead to Denial of Service by causing the Elasticsearch node to crash.
Affected (2)
Products: Elastic: Elasticsearch
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.17.25 |
References (1)
Source: security@elastic.co
PatchVendor Advisory
Timeline
No history available yet.