CVE-2023-1296
14.03.2023, 15:15
HashiCorp Nomad and Nomad Enterprise 1.4.0 up to 1.5.0 did not correctly enforce deny policies applied to a workloads variables. Fixed in 1.4.6 and 1.5.1.Enginsight
Vendor | Product | Version |
---|---|---|
hashicorp | nomad | 1.4.0 ≤ 𝑥 < 1.4.6 |
hashicorp | nomad | 1.4.0 ≤ 𝑥 < 1.4.6 |
hashicorp | nomad | 1.5.0 |
hashicorp | nomad | 1.5.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
- CWE-682 - Incorrect CalculationThe software performs a calculation that generates incorrect or unintended results that are later used in security-critical decisions or resource management.
- CWE-862 - Missing AuthorizationThe software does not perform an authorization check when an actor attempts to access a resource or perform an action.