HashiCorp Consul and Consul Enterprise 1.10.1 Raft RPC layer allows non-server agents with a valid certificate signed by the same CA to access server-only functionality, enabling privilege escalation. Fixed in 1.8.15, 1.9.9 and 1.10.2.
The product does not validate, or incorrectly validates, a certificate.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Consul | Hashicorp | * | 1.8.15 (excluding) |
Consul | Hashicorp | 1.9.0 (including) | 1.9.9 (excluding) |
Consul | Hashicorp | 1.10.0 (including) | 1.10.2 (excluding) |
Consul | Ubuntu | bionic | * |
Consul | Ubuntu | hirsute | * |
Consul | Ubuntu | impish | * |
Consul | Ubuntu | kinetic | * |
Consul | Ubuntu | trusty | * |
Consul | Ubuntu | xenial | * |