Description
It was identified that malformed scripts used in the script processor of an Ingest Pipeline could cause an Elasticsearch node to crash when calling the Simulate Pipeline API.
Remediation
References
https://discuss.elastic.co/t/elasticsearch-7-17-14-8-10-3-security-update-esa-2023-24/347708
https://www.elastic.co/community/security
Related Vulnerabilities
CVE-2020-13692 Vulnerability in maven package org.postgresql:postgresql
CVE-2018-1261 Vulnerability in maven package org.springframework.integration:spring-integration-zip
CVE-2018-1999031 Vulnerability in maven package org.jenkins-ci.plugins:meliora-testlab
CVE-2018-1000112 Vulnerability in maven package org.jenkins-ci.plugins:mercurial
CVE-2011-4838 Vulnerability in maven package com.sun.grizzly:jruby