GO-2022-0643

See a problem?
Source
https://pkg.go.dev/vuln/GO-2022-0643
Import Source
https://vuln.go.dev/ID/GO-2022-0643.json
JSON Data
https://api.osv.dev/v1/vulns/GO-2022-0643
Aliases
Published
2022-02-15T01:57:18Z
Modified
2024-05-20T16:03:47Z
Summary
Denial of service in github.com/elastic/beats
Details

A local attacker can cause a panic if they are able to send arbitrary traffic to a monitored port, due to an out of bounds read.

References

Affected packages

Go / github.com/elastic/beats

Package

Name
github.com/elastic/beats
View open source insights on deps.dev
Purl
pkg:golang/github.com/elastic/beats

Affected ranges

Type
SEMVER
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.1.0+incompatible

Ecosystem specific

{
    "imports": [
        {
            "path": "github.com/elastic/beats/packetbeat/protos/pgsql",
            "symbols": [
                "pgsqlFieldsParser",
                "pgsqlPlugin.Parse"
            ]
        }
    ]
}