Escape sequence injection vulnerability in Fluentd versions 0.12.29 through 0.12.40 may allow an attacker to change the terminal UI or execute arbitrary commands on the device via unspecified vectors.
Link | Tags |
---|---|
https://access.redhat.com/errata/RHSA-2018:2225 | third party advisory vendor advisory |
https://jvn.jp/en/vu/JVNVU95124098/index.html | issue tracking vdb entry third party advisory |
https://github.com/fluent/fluentd/blob/v0.12/CHANGELOG.md#bug-fixes | issue tracking release notes third party advisory |
https://github.com/fluent/fluentd/pull/1733 | issue tracking third party advisory patch |