ZeroHour

CVE-2020-15112

CVSS 3.1
6.5 medium
EPSS
1%p68
Published
()
Modified
Description

In etcd before versions 3.3.23 and 3.4.10, it is possible to have an entry index greater then the number of entries in the ReadAll method in wal/wal.go. This could cause issues when WAL entries are being read during consensus as an arbitrary etcd consensus participant could go down from a runtime panic when reading the entry.

Vendors
etcdfedoraproject
Products
etcd, fedora
Weakness
CWE-20, CWE-129
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.