
Эксплойт для проверки концепции для CVE-2024-23722, уязвимости типа «отказ в обслуживании» в Fluent Bit версий с 2.1.8 по 2.2.1. Скрипт на Python вызывает сбой целевого сервера с помощью специально сформированных HTTP-запросов.
Использование
python3 exploit.py http://127.0.0.1:8888
port is currently not open
port is currently not open
port is currently not open
port is currently not open
Server might have crashed
port is currently not open
port is currently not open
port is currently not open
Server might have crashed
port is currently not open
Описание проблемы https://medium.com/@adurands82/fluent-bit-dos-vulnerability-cve-2024-23722-4e3e74af9d00
Влияет на версии fluentbit с 2.1.8 по 2.2.1