CVE-2023-0845

CVSS V2 None CVSS V3 None
Description
Consul and Consul Enterprise allowed an authenticated user with service:write permissions to trigger a workflow that causes Consul server and client agents to crash under certain circumstances. This vulnerability was fixed in Consul 1.14.5.
Overview
  • CVE ID
  • CVE-2023-0845
  • Assigner
  • security@hashicorp.com
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-03-09T16:15:09
  • Last Modified Date
  • 2023-03-15T13:45:44
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:hashicorp:consul:*:*:*:*:-:*:*:* 1 OR 1.14.5
History
Created Old Value New Value Data Type Notes
2023-04-17 06:09:42 Added to TrackCVE
2023-04-17 06:09:45 Weakness Enumeration new