Security Advisory

CVE-2017-11480

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-12-08 18:00:00
Last updated 2024-08-05 18:12:39
Assigner elastic
CVSS score not scored
State PUBLISHED

Description

Packetbeat versions prior to 5.6.4 are affected by a denial of service flaw in the PostgreSQL protocol handler. If Packetbeat is listening for PostgreSQL traffic and a user is able to send arbitrary network traffic to the monitored port, the attacker could prevent Packetbeat from properly logging other PostgreSQL traffic.