CVE-2025-29478: Treasuredata Fluent Bit

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

An issue in fluent-bit v.3.7.2 allows a local attacker to cause a denial of service via the cfl_list_size in cfl_list.h:165.

Affected products

Published 2025-04-07. Last modified 2026-06-17.