CNNVD-202601-2461 Information

CNNVD ID

CNNVD-202601-2461

CVE-2026-0529

  • CNNVD Published: 2026-01-14

Description (Chinese)

Elastic Packetbeat是荷兰Elastic公司的一个数据采集器。 Elastic Packetbeat存在安全漏洞,该漏洞源于MongoDB协议解析器对数组索引验证不当,可能导致缓冲区溢出。

Description (English)

Elastic Packetbeat is a data collector of the Netherlands company Elastic. Elastic Packetbeat has a security loophole, which stems from the mischecking of the logarithmic index of the MongoDB protocol, which could lead to a spill out of the buffer zone.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Elastic

Published

2026-01-14

Last Modified

2026-02-24

References

https://discuss.elastic.co/t/packetbeat-8-19-10-9-1-10-9-2-4-security-update-esa-2026-02/384520 https://access.redhat.com/security/cve/cve-2026-0529

Patch

https://www.elastic.co/downloads/beats/packetbeat

Share on: