HIGH7.5
GHSA-fj69-23m4-ccvv
Elasticsearch Packetbeat has Excessive Allocation of Memory and CPU via Malicious IPv4 Fragments
Quick fix
GHSA-fj69-23m4-ccvv — github.com/elastic/beats: upgrade to the fixed version with the command below.
go get github.com/elastic/beats@v8.19.9Details
Allocation of resources without limits or throttling (CWE-770) allows an unauthenticated remote attacker to cause excessive allocation (CAPEC-130) of memory and CPU via the integration of malicious IPv4 fragments, leading to denial-of-service in Packetbeat.
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/github.com/elastic/beats
Introduced in:
8.6.0Fixed in: 8.19.9Fix
go get github.com/elastic/beats@v8.19.9Go/github.com/elastic/beats
Introduced in:
9.0.0Fixed in: 9.1.9Fix
go get github.com/elastic/beats@v9.1.9Go/github.com/elastic/beats
Introduced in:
9.2.0Fixed in: 9.2.3Fix
go get github.com/elastic/beats@v9.2.3Go/github.com/elastic/beats/v7
Introduced in:
0Fixed in: 7.0.0-alpha2.0.20251209162832-28cfc80d2f4eFix
go get github.com/elastic/beats/v7@v7.0.0-alpha2.0.20251209162832-28cfc80d2f4e