Back to bug 1987299

Who When What Removed Added
Guilherme de Almeida Suckevicz 2021-07-29 13:09:47 UTC Blocks 1987302
Guilherme de Almeida Suckevicz 2021-07-29 13:10:19 UTC Depends On 1987300, 1987303, 1987301
RaTasha Tillery-Smith 2021-07-29 13:46:21 UTC Doc Text A flaw was found in Elasticsearch. An uncontrolled recursion vulnerability that could lead to a denial of service attack was identified in the Elasticsearch Grok parser. This flaw allows a user who can submit arbitrary queries to Elasticsearch to create a malicious Grok query that crashes the Elasticsearch node. The highest threat from this vulnerability is to system availability.
Stoyan Nikolov 2021-08-02 07:17:24 UTC CC bdettelb, tomckay
Hardik Vyas 2021-08-05 10:20:06 UTC Priority low medium
Severity low medium
Fixed In Version elasticsearch 7.13.3, elasticsearch 6.8.17
Nick Tait 2021-08-05 17:52:41 UTC CC apevec, mmagr
Red Hat Bugzilla 2021-10-15 11:51:07 UTC CC kconner
Red Hat Bugzilla 2021-12-31 23:33:47 UTC CC almorale
Red Hat Bugzilla 2022-01-08 05:27:11 UTC CC jokerman
Red Hat Bugzilla 2022-04-19 04:38:55 UTC CC ggaughan
Red Hat Bugzilla 2022-06-30 23:46:52 UTC CC bibryam
Red Hat Bugzilla 2022-07-31 22:42:20 UTC CC tzimanyi
Red Hat Bugzilla 2022-08-12 04:38:11 UTC CC etirelli
Red Hat Bugzilla 2022-10-28 13:12:58 UTC CC krathod
Red Hat Bugzilla 2022-11-14 23:22:39 UTC CC jstastny
Ondrej Soukup 2022-11-29 09:04:01 UTC CC osoukup
Red Hat Bugzilla 2023-05-15 18:03:49 UTC CC rrajasek
Red Hat Bugzilla 2023-05-15 18:09:20 UTC CC drieden
Red Hat Bugzilla 2023-05-31 23:39:21 UTC CC tkirby
Red Hat Bugzilla 2023-07-07 08:27:57 UTC Assignee security-response-team nobody

Back to bug 1987299