CVE-2023-0845
go/github.com/hashicorp/consul/acl
NULL Pointer Dereference
Consul and Consul Enterprise allowed an authenticated user with service:write permissions to trigger a workflow that causes Consul server and client agents to crash under certain circumstances. This vulnerability was fixed in Consul 1.14.5.
All versions before 1.14.5
Upgrade to version 1.14.5 or above.
2023-03-16
source |