Security researchers at Ebryx discovered two security flaws impacting Fluent Bit. Tracked as CVE-2024-50608 & CVE-2024-50609, the vulnerabilities may allow a remote unauthenticated attacker to crash Fluent Bit and cause Denial of Service.
Tag: Fluent Bit
Fluent Bit Memory Corruption Vulnerability (CVE-2024-4323)
Fluent Bit, a widespread logging and metrics utility, is vulnerable to a memory corruption flaw tracked as CVE-2024-4323. Successful exploitation of the vulnerability may lead to denial of service, information disclosure, or, in extreme cases, remote code execution. The vulnerability has a critical severity rating and a CVSS score of 9.8.