QID 982054
QID 982054: Go (go) Security Update for github.com/hashicorp/nomad (GHSA-vf6q-9f2f-mwhv)
HashiCorp Nomad and Nomad Enterprise up to version 1.0.4 bridge networking mode allows ARP spoofing from other bridged tasks on the same node. Fixed in 0.12.12, 1.0.5, and 1.1.0 RC1.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-vf6q-9f2f-mwhv for updates pertaining to this vulnerability.
Vendor References
- GHSA-vf6q-9f2f-mwhv -
github.com/advisories/GHSA-vf6q-9f2f-mwhv
CVEs related to QID 982054
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-vf6q-9f2f-mwhv | github.com/hashicorp/nomad |
|