Escape sequence injection vulnerability in Fluentd versions 0.12.29 through 0.12.40 may allow an attacker to change the terminal UI or execute arbitrary commands on the device via unspecified vectors.
| Software | From | Fixed in |
|---|---|---|
| fluentd / fluentd | 0.12.29 | 0.12.29.x |
| fluentd / fluentd | 0.12.30 | 0.12.30.x |
| fluentd / fluentd | 0.12.31 | 0.12.31.x |
| fluentd / fluentd | 0.12.32 | 0.12.32.x |
| fluentd / fluentd | 0.12.33 | 0.12.33.x |
| fluentd / fluentd | 0.12.34 | 0.12.34.x |
| fluentd / fluentd | 0.12.35 | 0.12.35.x |
| fluentd / fluentd | 0.12.36 | 0.12.36.x |
| fluentd / fluentd | 0.12.37 | 0.12.37.x |
| fluentd / fluentd | 0.12.38 | 0.12.38.x |
| fluentd / fluentd | 0.12.39 | 0.12.39.x |
| fluentd / fluentd | 0.12.40 | 0.12.40.x |
| redhat / openstack | 13 | 13.x |
fluentd
|
0.12.29 | 0.12.41 |