Miggo Logo

CVE-2024-37280:
Elasticsearch StackOverflow vulnerability

4.9

CVSS Score
3.1

Basic Information

EPSS Score
0.57276%
Published
6/13/2024
Updated
10/3/2024
KEV Status
No
Technology
TechnologyJava

Technical Details

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Package NameEcosystemVulnerable VersionsFirst Patched Version
org.elasticsearch:elasticsearchmaven>= 8.13.1, < 8.14.08.14.0

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis

The vulnerability manifests in document ingestion with passthrough field mappings, indicating issues in dynamic field processing. The StackOverflow suggests uncontrolled recursion in parsing logic. While exact code isn't available, the passthrough field mapper's parse method and document parser's object handling are core components for dynamic field processing. The medium confidence reflects educated inference based on feature architecture and error type without direct patch analysis.

Vulnerable functions

Only Mi**o us*rs **n s** t*is s**tion

WAF Protection Rules

WAF Rule

* *l*w w*s *is*ov*r** in *l*sti*s**r**, *****tin* *o*um*nt in**stion w**n *n in**x t*mpl*t* *ont*ins * *yn*mi* *i*l* m*ppin* o* “p*sst*rou**” typ*. Un**r **rt*in *ir*umst*n**s, in**stin* *o*um*nts in t*is in**x woul* **us* * St**kOv*r*low *x**ption t

Reasoning

T** vuln*r**ility m*ni**sts in *o*um*nt in**stion wit* p*sst*rou** *i*l* m*ppin*s, in*i**tin* issu*s in *yn*mi* *i*l* pro**ssin*. T** St**kOv*r*low su***sts un*ontroll** r**ursion in p*rsin* lo*i*. W*il* *x**t *o** isn't *v*il**l*, t** p*sst*rou** *i