PT-2025-15477 · Unknown+1 · Elasticsearch+1

Published

2025-04-08

·

Updated

2025-12-15

·

CVE-2024-52981

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Elasticsearch (affected versions not specified)
Description: An issue was discovered where a large recursion using the Well-KnownText formatted string with nested GeometryCollection objects could cause a stack overflow.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Resource Exhaustion

Weakness Enumeration

Related Identifiers

BDU:2025-16094
BIT-ELASTICSEARCH-2024-52981
CVE-2024-52981
GHSA-5XM9-X7X4-4J5X

Affected Products

Elasticsearch
Red Os