Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Crhino

#35534of 53,635
7.5Total CVSS
Vulnerabilities · 1
PT-2020-13248
7.5
2020-06-11
Hashicorp · Hashicorp Consul Enterprise · CVE-2020-12758
**Name of the Vulnerable Software and Affected Versions** HashiCorp Consul and Consul Enterprise versions 1.6.0 through 1.6.5 HashiCorp Consul and Consul Enterprise versions 1.7.0 through 1.7.3 **Description** The issue is related to a denial of service (DoS) condition that can occur when HashiCorp Consul and Consul Enterprise are configured with an abnormally-formed service-router entry. This can cause the system to crash. The problem was introduced in version 1.6.0. **Recommendations** For versions 1.6.0 through 1.6.5, update to version 1.6.6 to resolve the issue. For versions 1.7.0 through 1.7.3, update to version 1.7.4 to resolve the issue. As a temporary workaround, consider restricting the configuration of service-router entries to prevent abnormally-formed entries from causing a crash.