#VU81265 Improper Privilege Management in Vault Enterprise - CVE-2023-3775
Published: September 29, 2023
Vault Enterprise
HashiCorp
Description
The vulnerability allows a remote user to perform a denial of service (DoS) attack.
The vulnerability exists due to incorrect enforcement of Sentinel Role Governing Policy. A remote user can create a Role Governing Policy (RGP) in one namespace and use it to restrict resources in another, non-child namespace.
Sentinel RGP’s can be set by users authorized to write to the /sys/policies/rgp
endpoint. These policies can be used to restrict or deny access to
resources, but cannot grant additional access. As a result, this
vulnerability is limited to denial of service.