QID 997898
Date Published: 2024-04-02
QID 997898: GO (Go) Security Update for github.com/hashicorp/nomad (GHSA-rpvr-38xv-xvxq)
A vulnerability was identified in Nomad, an ACL policy using a block without label may be applied to unexpected resources. This vulnerability, CVE-2023-3072, affects Nomad from 0.7 up to 1.5.6 and 1.4.10 and was fixed in 1.6.0, 1.5.7, and 1.4.11.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-rpvr-38xv-xvxq for updates and patch information.
Vendor References
- GHSA-rpvr-38xv-xvxq -
github.com/advisories/GHSA-rpvr-38xv-xvxq
CVEs related to QID 997898
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-rpvr-38xv-xvxq | github.com/hashicorp/nomad |
|