Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32781
HistoryNov 01, 2021 - 8:32 a.m.

Regular Expression Denial Of Service (ReDoS)

2021-11-0108:32:54
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
fluentd
vulnerability
redos
attack
apache log
software

EPSS

0.003

Percentile

65.5%

fluentd is vulnerable to regular expression denial of service (ReDoS) attacks. An attacker is able to inject a certain pattern of string via a broken apache log that would cause a ReDoS attack when the parsed malicious string spends too much time in the regular expression.

EPSS

0.003

Percentile

65.5%