QID 980521
QID 980521: Go (go) Security Update for github.com/hashicorp/consul (GHSA-8h2g-r292-j8xh)
In HashiCorp Consul before 1.10.1 (and Consul Enterprise), xds can generate a situation where a single L7 deny intention (with a default deny policy) results in an allow action.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-8h2g-r292-j8xh for updates pertaining to this vulnerability.
Vendor References
- GHSA-8h2g-r292-j8xh -
github.com/advisories/GHSA-8h2g-r292-j8xh
CVEs related to QID 980521
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-8h2g-r292-j8xh | github.com/hashicorp/consul |
|