CVE-2023-3299

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/07/2023
Last modified:
26/09/2024

Description

HashiCorp Nomad Enterprise 1.2.11 up to 1.5.6, and 1.4.10 ACL policies using a block without a label generates unexpected results. Fixed in 1.6.0, 1.5.7, and 1.4.11.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hashicorp:nomad:*:*:*:*:-:*:*:* 1.2.11 (including) 1.4.10 (including)
cpe:2.3:a:hashicorp:nomad:*:*:*:*:enterprise:*:*:* 1.2.11 (including) 1.4.10 (including)
cpe:2.3:a:hashicorp:nomad:*:*:*:*:-:*:*:* 1.5.0 (including) 1.5.6 (including)
cpe:2.3:a:hashicorp:nomad:*:*:*:*:enterprise:*:*:* 1.5.0 (including) 1.5.6 (including)