Vulnerabilities
Vulnerable Software
Hashicorp:  >> Nomad  >> 1.0.14  Security Vulnerabilities
HashiCorp Nomad and Nomad Enterprise 0.9.2 through 1.0.17, 1.1.11, and 1.2.5 allow operators with read-fs and alloc-exec (or job-submit) capabilities to read arbitrary files on the host filesystem as root.
CVSS Score
7.5
EPSS Score
0.005
Published
2022-02-17
HashiCorp Nomad and Nomad Enterprise 0.9.0 through 1.0.16, 1.1.11, and 1.2.5 allow operators with job-submit capabilities to use the spread stanza to panic server agents. Fixed in 1.0.18, 1.1.12, and 1.2.6.
CVSS Score
6.5
EPSS Score
0.007
Published
2022-02-15
HashiCorp Nomad and Nomad Enterprise 0.3.0 through 1.0.17, 1.1.11, and 1.2.5 artifact download functionality has a race condition such that the Nomad client agent could download the wrong artifact into the wrong destination. Fixed in 1.0.18, 1.1.12, and 1.2.6
CVSS Score
5.9
EPSS Score
0.004
Published
2022-02-14


Contact Us

Shodan ® - All rights reserved