CVE-2025-68383

ADVISORY - github

Summary

Improper Validation of Specified Index, Position, or Offset in Input (CWE-1285) in Filebeat Syslog parser and the Libbeat Dissect processor can allow a user to trigger a Buffer Overflow (CAPEC-100) and cause a denial of service (panic/crash) of the Filebeat process via either a malformed Syslog message or a malicious tokenizer pattern in the Dissect configuration.

EPSS Score: 0.00055 (0.173)

Common Weakness Enumeration (CWE)

ADVISORY - nist

Improper Validation of Specified Quantity in Input

ADVISORY - github

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Improper Validation of Specified Quantity in Input


Sign in to Docker Scout

See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.

Sign in