CVE Vulnerabilities

CVE-2023-3774

Uncaught Exception

Published: Jul 28, 2023 | Modified: Nov 21, 2024
CVSS 3.x
4.9
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An unhandled error in Vault Enterprises namespace creation may cause the Vault process to crash, potentially resulting in denial of service. Fixed in 1.14.1, 1.13.5, and 1.12.9.

Weakness

An exception is thrown from a function, but it is not caught.

Affected Software

NameVendorStart VersionEnd Version
VaultHashicorp1.12.8 (including)1.12.8 (including)
VaultHashicorp1.13.4 (including)1.13.4 (including)
VaultHashicorp1.14.0 (including)1.14.0 (including)

References