VDB
Sign up
MEDIUM6.5

GHSA-ghfh-p92w-j4mg

Elasticsearch-grok Potential Node Crash due to Large Recursion in `innerForbidCircularReferences` Function

Quick fix

GHSA-ghfh-p92w-j4mg — org.elasticsearch:elasticsearch-grok: upgrade to the fixed version with the command below.

# pom.xml: bump <version>8.15.1</version> for org.elasticsearch:elasticsearch-grok

Details

A flaw was discovered in Elasticsearch, where a large recursion using the innerForbidCircularReferences function of the PatternBank class could cause the Elasticsearch node to crash.

A successful attack requires a malicious user to have read_pipeline Elasticsearch cluster privilege assigned to them.

Are you affected?

Enter the version of the package you're using.

Affected packages

Maven/org.elasticsearch:elasticsearch-grok
Introduced in: 7.17.0Fixed in: 8.15.1
Fix# pom.xml: bump <version>8.15.1</version> for org.elasticsearch:elasticsearch-grok

References