#VU80034 Unchecked Return Value in Consul and Consul Enterprise - CVE-2022-40716
Published: August 28, 2023
Consul
Consul Enterprise
HashiCorp
Description
The vulnerability allows a remote user to bypass implemented security restrictions.
The vulnerability exists due to an error when handling CSR requests at the RPC endpoint. A remote user with access to a client agent’s mTLS certificate and a valid ACL token for any service within the mesh can send a specially crafted certificate signing request (CSR) to the Consul’s internal RPC endpoint and bypass intended ACL token restrictions.