Denial of Service Vulnerability in Logstash by Elastic
CVE-2019-7620
7.5HIGH
What is CVE-2019-7620?
Logstash versions prior to 7.4.1 and 6.8.4 are susceptible to a denial of service issue within the Logstash Beats input plugin. This vulnerability allows an unauthenticated user, who can access the designated Logstash Beats port, to send crafted packets that can render Logstash unresponsive. It is crucial for users to upgrade to the latest versions to mitigate this risk.
Affected Version(s)
Logstash before 7.4.1 and 6.8.4