CVE-2024-4323
Fluent Bit Memory Corruption Vulnerability
A memory corruption vulnerability in Fluent Bit versions 2.0.7 thru 3.0.3. This issue lies in the embedded http server’s parsing of trace requests and may result in denial of service conditions, information disclosure, or remote code execution.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
Fluent Bit · Fluent Bitpublic PoCs found — 3
githubgithub.com/skilfoy/CVE-2024-4323-Exploit-POC★ 15githubgithub.com/d0rb/CVE-2024-4323★ 1githubgithub.com/yuansec/CVE-2024-4323-dos_poc★ 0⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →