CVE-2023-31419
MEDIUMElasticsearch 7.0.0-7.17.12 - Denial of Service via _search API Query String
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2023-31419. PoCs published by sqrtZeroKnowledge, u238.
AI-analyzed exploit summary This PoC exploits a Stack Overflow vulnerability in Elasticsearch's _search API by sending maliciously crafted queries with excessively large payloads, leading to a Denial of Service (DoS). The exploit targets Elasticsearch versions 7.0.0 to 7.17.12 and 8.0.0 to 8.9.0.
Description
A flaw was discovered in Elasticsearch, affecting the _search API that allowed a specially crafted query string to cause a Stack Overflow and ultimately a Denial of Service.
Exploits (2)
This PoC exploits a Stack Overflow vulnerability in Elasticsearch's _search API by sending maliciously crafted queries with excessively large payloads, leading to a Denial of Service (DoS). The exploit targets Elasticsearch versions 7.0.0 to 7.17.12 and 8.0.0 to 8.9.0.
This PoC exploits a DoS vulnerability in Elasticsearch by sending a malformed search query with an excessively long field name, causing the server to crash. The exploit targets CVE-2023-31419 and requires authentication.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H