CVE-2024-10005

Aliases:GHSA-chgm-7r52-whjjBIT-consul-2024-10005GO-2024-3243DEBIAN-CVE-2024-10005CGA-23cp-35c7-qmmhCGA-2749-g29x-rc4pCGA-27q9-9vvp-qxh4CGA-29xw-5mqv-xv9gCGA-2mv6-2w87-wpjjCGA-3c7q-x5cm-xhrmCGA-3jrm-hf9j-cvgqCGA-3qcr-pr93-2pvqCGA-3rrp-ghpr-3frvCGA-45cm-5xw3-v89hCGA-48wq-mcg3-jcm8CGA-55h8-p2hc-7gg9CGA-56mw-c7j8-rhr6CGA-5c6q-974j-w93fCGA-5cm6-gg9c-w9wpCGA-5cwh-ghhx-ccvmCGA-6rjp-vqf7-23grCGA-6w3v-pv9m-jrwfCGA-72fg-gmm8-whh4CGA-7f3f-2mxj-f8ggCGA-7f7x-jhh9-g2mjCGA-7hgf-wqxc-xrxhCGA-7w7m-fxgh-4wm5CGA-8296-7frm-fm94CGA-86mm-ggq3-p4hvCGA-8859-wq7j-9q82CGA-8c64-pvfq-f5gxCGA-8v3x-j9hx-rhqfCGA-8wmp-j3p9-c29qCGA-8xm6-fgrw-xw98CGA-94m9-4fr5-3vcqCGA-95v7-3q7c-c65rCGA-9h6f-qxcc-8xwrCGA-cq5g-f2r4-jhggCGA-cr8w-4p3r-h3w2CGA-cxgx-4gvc-9v58CGA-fgc9-6766-cj77CGA-fpf8-3gcv-8x77CGA-fxr5-jq39-9w3hCGA-gfrq-2mph-fh87CGA-hjgf-45x3-38x2CGA-m5x5-ggw4-7wq9CGA-p3xm-qr3v-33qqCGA-q27x-mgq8-6q42CGA-q48x-v462-vpcrCGA-q795-g8f7-q6rhCGA-qfpm-qj7p-5hvwCGA-rj7f-x3c5-4g49CGA-rr49-8jfv-h36rCGA-v3cf-8rxh-6fpmCGA-v78r-f386-pph5CGA-vg78-8mpp-g5m3CGA-x94j-m4g7-6fgfCGA-xr38-984c-f2ww
Modified
Published: 30 Oct 2024, 21:19
Last modified:10 Jan 2025, 13:06

Vulnerability Summary

Overall Risk (default)
medium
33/100
CVSS Score
8.1 HIGH
v3.1 (cve.org)
EPSS Score
0.77% LOW
1% probability +0.57%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

30 Oct 2024, 21:19
Published
Vulnerability first disclosed
10 Jan 2025, 13:06
Last Modified
Vulnerability information updated

Description

A vulnerability was identified in Consul and Consul Enterprise (“Consul”) such that using URL paths in L7 traffic intentions could bypass HTTP request path-based access rules.

CVSS Metrics

  • v4.0HIGHScore: 8.6CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
  • v3.1HIGHScore: 8.1CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
  • v3.1MEDIUMScore: 5.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N

EPSS Trends

Current EPSS score: 0.77% Percentile: 54%

Techniques & Countermeasures

  • CWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

    The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

Affected Systems

  • chainguardconsul-1.18

    < 1.18.2-r44 | < 1.18.2-r48

  • chainguardconsul-1.19

    < 1.19.2-r47 | < 1.19.2-r43

  • chainguardconsul-1.20

    < 1.20.6-r11

  • chainguardconsul-1.20-oci-entrypoint

    < 1.20.6-r11

  • chainguardconsul-1.20-oci-entrypoint-compat

    < 1.20.6-r11

  • chainguardconsul-1.21

    < 1.21.5-r6

  • chainguardconsul-1.21-oci-entrypoint

    < 1.21.5-r6

  • chainguardconsul-1.21-oci-entrypoint-compat

    < 1.21.5-r6

  • chainguardconsul-1.22

    < 1.22.1-r2

  • chainguardconsul-1.22-oci-entrypoint

    < 1.22.1-r2

  • chainguardconsul-1.22-oci-entrypoint-compat

    < 1.22.1-r2

  • chainguardconsul-fips-1.19

    < 1.19.2-r42 | < 1.19.2-r47

  • chainguardconsul-fips-1.20

    < 1.20.6-r10

  • chainguardconsul-fips-1.20-oci-entrypoint

    < 1.20.6-r10

  • chainguardconsul-fips-1.20-oci-entrypoint-compat

    < 1.20.6-r10

  • chainguardconsul-fips-1.21

    < 1.21.5-r6

  • chainguardconsul-fips-1.21-oci-entrypoint

    < 1.21.5-r6

  • chainguardconsul-fips-1.21-oci-entrypoint-compat

    < 1.21.5-r6

  • chainguardconsul-fips-1.22

    < 1.22.2-r1

  • chainguardconsul-fips-1.22-oci-entrypoint

    < 1.22.2-r1

  • chainguardconsul-fips-1.22-oci-entrypoint-compat

    < 1.22.2-r1

  • debianconsul

    all

  • github.com/hashicorpconsul

    ≥ 1.9.0, < 1.20.1

  • hashicorpconsul

    ≥ 1.9.0, < 1.20.1 | ≥ 1.4.1, < 1.20.1 | ≥ 1.9.0, < 1.15.15 | ≥ 1.18.0, < 1.18.5 | ≥ 1.19.0, < 1.19.3 | 1.20.0

  • hashicorpconsul enterprise

    ≥ 1.9.0, < 1.20.1

References (10)