Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
6.5
CVE-2020-15106
- EPSS 1.29%
- Veröffentlicht 05.08.2020 19:15:10
- Zuletzt bearbeitet 21.11.2024 05:04:49
In etcd before versions 3.3.23 and 3.4.10, a large slice causes panic in decodeRecord method. The size of a record is stored in the length field of a WAL file and no additional validation is done on this data. Therefore, it is possible to forge an ex...
8.1
CVE-2018-16886
- EPSS 4.03%
- Veröffentlicht 14.01.2019 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:53:32
etcd versions 3.2.x before 3.2.26 and 3.3.x before 3.3.11 are vulnerable to an improper authentication issue when role-based access control (RBAC) is used and client-cert-auth is enabled. If an etcd client server TLS certificate contains a Common Nam...