PT-2025-44517 · Elastic+1 · Logstash+1

Published

2025-08-05

·

Updated

2025-10-31

·

CVE-2025-34274

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Nagios Log Server versions prior to 2024R2.0.3
Description The software runs its embedded Logstash process as the root user, leading to a situation where an attacker compromising the Logstash process could execute code with root privileges, potentially resulting in full system compromise. This could occur through exploiting insecure plugins, pipeline configuration injection, or vulnerabilities in input parsing. The Logstash service has been altered to run as the 'nagios' user to mitigate this risk.
Recommendations Update to version 2024R2.0.3 or later.

Fix

LPE

Weakness Enumeration

Related Identifiers

BDU:2026-00267
CVE-2025-34274

Affected Products

Logstash
Nagios Log Server