HashiCorp Nomad and Nomad Enterprise 1.5.13 up to 1.6.6, and 1.7.3 template renderer is vulnerable to arbitrary file write on the host as the Nomad client user through symlink attacks. This vulnerability, CVE-2024-1329, is fixed in Nomad 1.7.4, 1.6.7, and 1.5.14.
The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Nomad | Hashicorp | 1.5.13 (including) | 1.5.14 (excluding) |
Nomad | Hashicorp | 1.6.6 (including) | 1.6.7 (excluding) |
Nomad | Hashicorp | 1.7.3. (including) | 1.7.4 (excluding) |
Nomad | Ubuntu | bionic | * |