CVE-2024-26455

fluent-bit 2.2.2 contains a Use-After-Free vulnerability in /fluent-bit/plugins/custom_calyptia/calyptia.c.
Configurations

Configuration 1 (hide)

cpe:2.3:a:treasuredata:fluent_bit:2.2.2:*:*:*:*:*:*:*

History

12 May 2025, 12:57

Type Values Removed Values Added
References () https://github.com/LuMingYinDetect/fluent-bit_defects/blob/main/fluent-bit_detect_1.md - () https://github.com/LuMingYinDetect/fluent-bit_defects/blob/main/fluent-bit_detect_1.md - Exploit, Third Party Advisory
First Time Treasuredata fluent Bit
Treasuredata
CPE cpe:2.3:a:treasuredata:fluent_bit:2.2.2:*:*:*:*:*:*:*

21 Nov 2024, 09:02

Type Values Removed Values Added
References () https://github.com/LuMingYinDetect/fluent-bit_defects/blob/main/fluent-bit_detect_1.md - () https://github.com/LuMingYinDetect/fluent-bit_defects/blob/main/fluent-bit_detect_1.md -

28 Aug 2024, 21:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-416
Summary
  • (es) fluent-bit 2.2.2 contiene una vulnerabilidad Use-After-Free en /fluent-bit/plugins/custom_calyptia/calyptia.c.

26 Feb 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-26 18:15

Updated : 2025-05-12 12:57


NVD link : CVE-2024-26455

Mitre link : CVE-2024-26455

CVE.ORG link : CVE-2024-26455


JSON object : View

Products Affected

treasuredata

  • fluent_bit
CWE
CWE-416

Use After Free