PT-2024-40147 · Teleport · Teleport
Published
2024-01-03
·
Updated
2024-01-03
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions:
Teleport versions prior to 13.4.13
Teleport versions prior to 14.2.4
Description:
An issue was discovered in Teleport's Access Lists feature, introduced in version 14 and currently under preview, allowing an Access List Owner to assign arbitrary permissions. This could result in privilege escalation, including assigning permissions to themselves.
Recommendations:
For Teleport version prior to 13.4.13, update to version 13.4.13 to resolve the issue.
For Teleport version prior to 14.2.4, update to version 14.2.4 to resolve the issue.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Teleport