Consul and Consul Enterprise's cluster peering implementation contained a flaw whereby a peer cluster with service of the same name as a local service could corrupt Consul state, resulting in denial of service. This vulnerability was resolved in Consul 1.14.5, and 1.15.3
History

Wed, 08 Jan 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: HashiCorp

Published:

Updated: 2025-01-08T17:51:02.037Z

Reserved: 2023-03-09T18:51:51.406Z

Link: CVE-2023-1297

cve-icon Vulnrichment

Updated: 2024-08-02T05:41:00.070Z

cve-icon NVD

Status : Modified

Published: 2023-06-02T23:15:09.293

Modified: 2024-11-21T07:38:52.020

Link: CVE-2023-1297

cve-icon Redhat

No data.