Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-2048

Опубликовано: 04 мар. 2024
Источник: redhat
CVSS3: 8.1

Описание

Vault and Vault Enterprise (“Vault”) TLS certificate auth method did not correctly validate client certificates when configured with a non-CA certificate as trusted certificate. In this configuration, an attacker may be able to craft a malicious certificate that could be used to bypass authentication. Fixed in Vault 1.15.5 and 1.14.10.

A flaw was found in Vault and Vault Enterprise's TLS certificate authentication method. This vulnerability allows an attacker to bypass authentication via a crafted malicious certificate when a non-CA certificate is used as a trusted certificate.

Отчет

Note this vulnerability is in github.com/hashicorp/vault, but not in github.com/hashicorp/vault/api, which is a separate and independent module. For this reason none of the Red Hat offerings are not affected at all by this vulnerability.

Меры по смягчению последствий

There's no mitigation available for this issue other than update the affected package to the version containing the fix.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Openshift Data Foundation 4odf4/cephcsi-rhel9Not affected
Red Hat Openshift Data Foundation 4odf4/mcg-cli-rhel9Will not fix
Red Hat Openshift Data Foundation 4odf4/mcg-rhel9-operatorWill not fix
Red Hat Openshift Data Foundation 4odf4/ocs-metrics-exporter-rhel9Not affected
Red Hat Openshift Data Foundation 4odf4/ocs-must-gather-rhel8Not affected
Red Hat Openshift Data Foundation 4odf4/ocs-rhel9-operatorNot affected
Red Hat Openshift Data Foundation 4odf4/odf-cli-rhel9Not affected
Red Hat Openshift Data Foundation 4odf4/odf-rhel8-operatorNot affected
Red Hat Openshift Data Foundation 4odf4/rook-ceph-rhel8-operatorWill not fix
Red Hat Trusted Application Pipelinequay.io/redhat-appstudio/rhtap-task-runnerNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-295
https://bugzilla.redhat.com/show_bug.cgi?id=2339091hashicorp/vault: Vault Cert Auth Method Did Not Correctly Validate Non-CA Certificates

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
nvd
больше 1 года назад

Vault and Vault Enterprise (“Vault”) TLS certificate auth method did not correctly validate client certificates when configured with a non-CA certificate as trusted certificate. In this configuration, an attacker may be able to craft a malicious certificate that could be used to bypass authentication. Fixed in Vault 1.15.5 and 1.14.10.

CVSS3: 8.1
github
больше 1 года назад

Incorrect TLS certificate auth method in Vault

CVSS3: 8.1
fstec
больше 1 года назад

Уязвимость платформ для архивирования корпоративной информации HashiCorp Vault и Vault Enterprise, связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю обойти процесс аутентификации

CVSS3: 8.1
redos
11 месяцев назад

Множественные уязвимости vault

8.1 High

CVSS3

Уязвимость CVE-2024-2048