Consul Server Panic when Ingress and API Gateways Configured with Peering
CVE-2023-0845
4.9MEDIUM
What is CVE-2023-0845?
Consul and Consul Enterprise allowed an authenticated user with service:write permissions to trigger a workflow that causes Consul server and client agents to crash under certain circumstances. This vulnerability was fixed in Consul 1.14.5.
Affected Version(s)
Consul 64 bit 1.14.0
Consul 64 bit 1.14.1
Consul 64 bit 1.14.2