A memory corruption vulnerability in Fluent Bit versions 2.0.7 thru 3.0.3. This issue lies in the embedded http server’s parsing of trace requests and may result in denial of service conditions, information disclosure, or remote code execution.
References
Configurations
No configuration.
History
21 Nov 2024, 09:42
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
References | () https://github.com/fluent/fluent-bit/commit/9311b43a258352797af40749ab31a63c32acfd04 - | |
References | () https://tenable.com/security/research/tra-2024-17 - | |
Summary |
|
20 May 2024, 12:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-05-20 12:15
Updated : 2024-11-21 09:42
NVD link : CVE-2024-4323
Mitre link : CVE-2024-4323
CVE.ORG link : CVE-2024-4323
JSON object : View
Products Affected
No product.
CWE
CWE-122
Heap-based Buffer Overflow