It was identified that malformed scripts used in the script processor of an Ingest Pipeline could cause an Elasticsearch node to crash when calling the Simulate Pipeline API.
References
Link | Resource |
---|---|
https://discuss.elastic.co/t/elasticsearch-7-17-14-8-10-3-security-update-esa-2023-24/347708 | Vendor Advisory |
https://www.elastic.co/community/security | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: elastic
Published: 2023-11-22T09:27:10.454Z
Updated: 2023-11-22T09:27:10.454Z
Reserved: 2023-10-24T17:28:32.186Z
Link: CVE-2023-46673
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-11-22T10:15:08.417
Modified: 2023-11-30T20:22:45.863
Link: CVE-2023-46673
JSON object: View
Redhat Information
No data.
CWE