RubySec

Providing security resources for the Ruby community

CVE-2015-5619 (logstash-core): Logstash: Man-In-The Middle attack

ADVISORIES

GEM

logstash-core

SEVERITY

CVSS v3.x: 5.9 (Medium)

CVSS v2.0: 4.3 (Medium)

PATCHED VERSIONS

  • ~> 1.4.5
  • >= 1.5.4

DESCRIPTION

Logstash 1.4.x before 1.4.5 and 1.5.x before 1.5.4 with Lumberjack output or the Logstash forwarder does not validate SSL/TLS certificates from the Logstash server, which might allow attackers to obtain sensitive information via a man-in-the-middle attack.

RELATED