Elastic has announced a security issue in Kibana that affects the version distributed with our product.
In the next version 60.6, which will be available soon, we have upgraded Kibana to 7.17.23.
We also offer you the solution for your current version, simply execute the following steps:
1- Download the script to implement the solution from WOCU-Monitoring
curl https://files.wocu-monitoring.com/kibana-cve-2024-37287.sh
output kibana-cve-2024-37287.sh
2- Run the script with root privileges
sudo -i bash ./kibana-cve-2024-37287.sh
The output shows the following messages
Downloading kibana 7.17.23
Extracting kibana
Copying kibana
kibana-7.17.23-linux-x86_64/
Removing data files
Creating soft links
Creating a patch file for kibana in supervisor
Applying the patch to kibana in supervisor
Patching the kibana.conf file
Reloading supervisor
kibana: stopped
kibana: started
If you have any questions or problems, please do not hesitate to contact us.
The WOCU-Monitoring team.