Vulnerabilities > CVE-2024-23450 - Unspecified vulnerability in Elastic Elasticsearch
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
A flaw was discovered in Elasticsearch, where processing a document in a deeply nested pipeline on an ingest node could cause the Elasticsearch node to crash.
Vulnerable Configurations
References
- https://discuss.elastic.co/t/elasticsearch-8-13-0-7-17-19-security-update-esa-2024-06/356314
- https://discuss.elastic.co/t/elasticsearch-8-13-0-7-17-19-security-update-esa-2024-06/356314
- https://security.netapp.com/advisory/ntap-20240517-0010/
- https://security.netapp.com/advisory/ntap-20240517-0010/
- https://www.elastic.co/community/security
- https://www.elastic.co/community/security