Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wr2v-9rpq-c35q

Опубликовано: 31 янв. 2024
Источник: github
Github: Прошло ревью
CVSS3: 6.5

Описание

Etcd Gateway TLS authentication only applies to endpoints detected in DNS SRV records

Vulnerability type

Cryptography

Workarounds

Refer to the gateway documentation. The vulnerability was spotted due to unclear documentation of how the gateway handles endpoints validation.

Detail

When starting a gateway, TLS authentication will only be attempted on endpoints identified in DNS SRV records for a given domain, which occurs in the discoverEndpoints function. No authentication is performed against endpoints provided in the --endpoints flag. The auditors has noted that appropriate documentation of this validation functionality plus deprecation of this misleading functionality is an acceptable path forward.

References

Find out more on this vulnerability in the security audit report

For more information

If you have any questions or comments about this advisory:

Пакеты

Наименование

go.etcd.io/etcd

go
Затронутые версииВерсия исправления

>= 3.4.0-rc.0, <= 3.4.9

3.4.10

Наименование

go.etcd.io/etcd

go
Затронутые версииВерсия исправления

< 3.3.23

3.3.23

EPSS

Процентиль: 54%
0.00308
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-287
CWE-306

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 5 лет назад

In ectd before versions 3.4.10 and 3.3.23, gateway TLS authentication is only applied to endpoints detected in DNS SRV records. When starting a gateway, TLS authentication will only be attempted on endpoints identified in DNS SRV records for a given domain, which occurs in the discoverEndpoints function. No authentication is performed against endpoints provided in the --endpoints flag. This has been fixed in versions 3.4.10 and 3.3.23 with improved documentation and deprecation of the functionality.

CVSS3: 6.5
redhat
больше 5 лет назад

In ectd before versions 3.4.10 and 3.3.23, gateway TLS authentication is only applied to endpoints detected in DNS SRV records. When starting a gateway, TLS authentication will only be attempted on endpoints identified in DNS SRV records for a given domain, which occurs in the discoverEndpoints function. No authentication is performed against endpoints provided in the --endpoints flag. This has been fixed in versions 3.4.10 and 3.3.23 with improved documentation and deprecation of the functionality.

CVSS3: 6.5
nvd
больше 5 лет назад

In ectd before versions 3.4.10 and 3.3.23, gateway TLS authentication is only applied to endpoints detected in DNS SRV records. When starting a gateway, TLS authentication will only be attempted on endpoints identified in DNS SRV records for a given domain, which occurs in the discoverEndpoints function. No authentication is performed against endpoints provided in the --endpoints flag. This has been fixed in versions 3.4.10 and 3.3.23 with improved documentation and deprecation of the functionality.

CVSS3: 6.5
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 6.5
debian
больше 5 лет назад

In ectd before versions 3.4.10 and 3.3.23, gateway TLS authentication ...

EPSS

Процентиль: 54%
0.00308
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-287
CWE-306