CVE-2024-4323: exploitation status and patch state
CVE-2024-4323 · CVSS 9.8 CRITICAL · EPSS 28%
A memory corruption vulnerability in Fluent Bit versions 2.0.7 thru 3.0.3. This issue lies in the embedded http server’s parsing of trace requests and may result in denial of service conditions, information disclosure, or remote code execution.
Is CVE-2024-4323 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at 28%.
Public exploit code: none found in monitored sources.