Back to bug 2189529

Who When What Removed Added
Red Hat Bugzilla 2023-05-31 23:37:44 UTC CC mrajanna
Red Hat Bugzilla 2023-07-07 08:29:28 UTC Assignee security-response-team nobody
Avinash Hanwate 2023-07-11 06:26:01 UTC Doc Text HashiCorp Vault and Vault Enterprise could allow a remote attacker to obtain sensitive information, caused by a flaw in the Vault API. By sending a specially-crafted request, a remote attacker could exploit this vulnerability to obtain internal IP address of the Vault node.
RaTasha Tillery-Smith 2023-07-11 13:42:53 UTC Doc Text HashiCorp Vault and Vault Enterprise could allow a remote attacker to obtain sensitive information, caused by a flaw in the Vault API. By sending a specially-crafted request, a remote attacker could exploit this vulnerability to obtain internal IP address of the Vault node. A flaw was found in HashiCorp Vault and Vault Enterprise. This flaw allows a remote attacker to obtain sensitive information caused by a vulnerability in the Vault API. By sending a specially-crafted request, a remote attacker can obtain the internal IP address of the Vault node.
Avinash Hanwate 2023-07-18 13:23:08 UTC Blocks 2223663
Avinash Hanwate 2023-07-18 13:37:37 UTC Fixed In Version vault 1.6.2, vault 1.5.7
CC jcantril, periklis
Avinash Hanwate 2023-07-18 13:37:54 UTC Depends On 2223671
Red Hat Bugzilla 2023-08-03 08:29:17 UTC CC ocs-bugs

Back to bug 2189529