CVE-2024-52980 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A flaw was discovered in Elasticsearch, where a large recursion using the innerForbidCircularReferences function of the PatternBank class could cause the Elasti…
Medium CVSS: 6.5

CVE-2024-52980

A flaw was discovered in Elasticsearch, where a large recursion using the innerForbidCircularReferences function of the PatternBank class could cause the Elasticsearch node to crash.

A successful attack requires a malicious user to have read_pipeline Elasticsearch cluster privilege assigned to them.
Vendor
Elastic
Product
Elasticsearch
CWE
CWE-400
Yayın Tarihi
2025-04-08 17:15:34
Güncelleme
2025-09-30 21:35:59
Source Identifier
security@elastic.co
KEV Date Added
-

Kategoriler

Referanslar