Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wr2v-9rpq-c35q

Опубликовано: 31 янв. 2024
Источник: github
Github: Прошло ревью
CVSS3: 6.5

Описание

Etcd Gateway TLS authentication only applies to endpoints detected in DNS SRV records

Vulnerability type

Cryptography

Workarounds

Refer to the gateway documentation. The vulnerability was spotted due to unclear documentation of how the gateway handles endpoints validation.

Detail

When starting a gateway, TLS authentication will only be attempted on endpoints identified in DNS SRV records for a given domain, which occurs in the discoverEndpoints function. No authentication is performed against endpoints provided in the --endpoints flag. The auditors has noted that appropriate documentation of this validation functionality plus deprecation of this misleading functionality is an acceptable path forward.

References

Find out more on this vulnerability in the security audit report

For more information

If you have any questions or comments about this advisory:

Пакеты

Наименование

go.etcd.io/etcd

go
Затронутые версииВерсия исправления

>= 3.4.0-rc.0, <= 3.4.9

3.4.10

Наименование

go.etcd.io/etcd

go
Затронутые версииВерсия исправления

< 3.3.23

3.3.23

EPSS

Процентиль: 74%
0.01636
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-287
CWE-306

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 6 лет назад

In ectd before versions 3.4.10 and 3.3.23, gateway TLS authentication is only applied to endpoints detected in DNS SRV records. When starting a gateway, TLS authentication will only be attempted on endpoints identified in DNS SRV records for a given domain, which occurs in the discoverEndpoints function. No authentication is performed against endpoints provided in the --endpoints flag. This has been fixed in versions 3.4.10 and 3.3.23 with improved documentation and deprecation of the functionality.

CVSS3: 6.5
redhat
около 6 лет назад

In ectd before versions 3.4.10 and 3.3.23, gateway TLS authentication is only applied to endpoints detected in DNS SRV records. When starting a gateway, TLS authentication will only be attempted on endpoints identified in DNS SRV records for a given domain, which occurs in the discoverEndpoints function. No authentication is performed against endpoints provided in the --endpoints flag. This has been fixed in versions 3.4.10 and 3.3.23 with improved documentation and deprecation of the functionality.

CVSS3: 6.5
nvd
почти 6 лет назад

In ectd before versions 3.4.10 and 3.3.23, gateway TLS authentication is only applied to endpoints detected in DNS SRV records. When starting a gateway, TLS authentication will only be attempted on endpoints identified in DNS SRV records for a given domain, which occurs in the discoverEndpoints function. No authentication is performed against endpoints provided in the --endpoints flag. This has been fixed in versions 3.4.10 and 3.3.23 with improved documentation and deprecation of the functionality.

CVSS3: 6.5
msrc
больше 4 лет назад

Описание отсутствует

CVSS3: 6.5
debian
почти 6 лет назад

In ectd before versions 3.4.10 and 3.3.23, gateway TLS authentication ...

EPSS

Процентиль: 74%
0.01636
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-287
CWE-306