vulnerability

Gentoo Linux: CVE-2021-45042: HashiCorp Vault: Multiple Vulnerabilities

Severity
7
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:C)
Published
Dec 17, 2021
Added
Aug 2, 2022
Modified
Aug 2, 2022

Description

In HashiCorp Vault and Vault Enterprise before 1.7.7, 1.8.x before 1.8.6, and 1.9.x before 1.9.1, clusters using the Integrated Storage backend allowed an authenticated user (with write permissions to a kv secrets engine) to cause a panic and denial of service of the storage backend. The earliest affected version is 1.4.0.

Solution

gentoo-linux-upgrade-app-admin-vault
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.