PT-2024-40147 · Teleport · Teleport

Published

2024-01-03

·

Updated

2024-01-03

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions: Teleport versions prior to 13.4.13 Teleport versions prior to 14.2.4
Description: An issue was discovered in Teleport's Access Lists feature, introduced in version 14 and currently under preview, allowing an Access List Owner to assign arbitrary permissions. This could result in privilege escalation, including assigning permissions to themselves.
Recommendations: For Teleport version prior to 13.4.13, update to version 13.4.13 to resolve the issue. For Teleport version prior to 14.2.4, update to version 14.2.4 to resolve the issue.

Related Identifiers

GHSA-76CC-P55W-63G3

Affected Products

Teleport