Description
It was identified that malformed scripts used in the script processor of an Ingest Pipeline could cause an Elasticsearch node to crash when calling the Simulate Pipeline API.
Remediation
References
https://discuss.elastic.co/t/elasticsearch-7-17-14-8-10-3-security-update-esa-2023-24/347708
https://www.elastic.co/community/security
Related Vulnerabilities
CVE-2022-43411 Vulnerability in maven package org.jenkins-ci.plugins:gitlab-plugin
CVE-2021-21688 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2021-21181 Vulnerability in npm package electron
CVE-2015-7539 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2013-1879 Vulnerability in maven package org.apache.activemq:activemq-client