#VU80812 Security features bypass in Vault and Vault Enterprise - CVE-2023-4680
Published: September 15, 2023
Vault
Vault Enterprise
HashiCorp
Description
The vulnerability allows a remote user to bypass implemented security restrictions.
The vulnerability exists due to an error when enforcing policies related to convergent encryption feature. Software does not restrict the use of user-provided nonces when performing encryption operations on the transit secrets engine when convergent encryption is not enabled. A remote user authorized by Vault policies to encrypt transit data may be able to decrypt arbitrary ciphertext by performing encryption operations using known plaintexts and nonces.