CVE-2023-3774

MEDIUM4.9EPSS 0.52%

Vault Enterprise Namespace Creation May Lead to Denial of Service

發布日:2024/3/6修改日:2025/5/20

描述

An unhandled error in Vault Enterprise's namespace creation may cause the Vault process to crash, potentially resulting in denial of service. Fixed in 1.14.1, 1.13.5, and 1.12.9.

受影響套件(1)

  • Bitnami/vault>= 1.12.8, < 1.12.9, >= 1.13.4, < 1.13.5, >= 1.14.0, < 1.14.1

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM4.9CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

參考連結(2)

CVE-2023-3774 — Vault Enterprise Namespace Creation May Lead to Denial of Service · VulnScope