CVE Vulnerabilities

CVE-2023-3774

Uncaught Exception

Published: Jul 28, 2023 | Modified: Nov 21, 2024
CVSS 3.x
4.9
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An unhandled error in Vault Enterprises namespace creation may cause the Vault process to crash, potentially resulting in denial of service. Fixed in 1.14.1, 1.13.5, and 1.12.9.

Weakness

An exception is thrown from a function, but it is not caught.

Affected Software

Name Vendor Start Version End Version
Vault Hashicorp 1.12.8 (including) 1.12.8 (including)
Vault Hashicorp 1.13.4 (including) 1.13.4 (including)
Vault Hashicorp 1.14.0 (including) 1.14.0 (including)

References