VDB
Sign up
HIGH7.5

GHSA-fj69-23m4-ccvv

Elasticsearch Packetbeat has Excessive Allocation of Memory and CPU via Malicious IPv4 Fragments

Quick fix

GHSA-fj69-23m4-ccvv — github.com/elastic/beats: upgrade to the fixed version with the command below.

go get github.com/elastic/beats@v8.19.9

Details

Allocation of resources without limits or throttling (CWE-770) allows an unauthenticated remote attacker to cause excessive allocation (CAPEC-130) of memory and CPU via the integration of malicious IPv4 fragments, leading to denial-of-service in Packetbeat.

Are you affected?

Enter the version of the package you're using.

Affected packages

Go/github.com/elastic/beats
Introduced in: 8.6.0Fixed in: 8.19.9
Fixgo get github.com/elastic/beats@v8.19.9
Go/github.com/elastic/beats
Introduced in: 9.0.0Fixed in: 9.1.9
Fixgo get github.com/elastic/beats@v9.1.9
Go/github.com/elastic/beats
Introduced in: 9.2.0Fixed in: 9.2.3
Fixgo get github.com/elastic/beats@v9.2.3
Go/github.com/elastic/beats/v7
Introduced in: 0Fixed in: 7.0.0-alpha2.0.20251209162832-28cfc80d2f4e
Fixgo get github.com/elastic/beats/v7@v7.0.0-alpha2.0.20251209162832-28cfc80d2f4e

References