Bug 2203783 (CVE-2023-2197) - CVE-2023-2197 HashiCorp/vault-enterprise: Vault Enterprise Vulnerable to Padding Oracle Attacks When Using a CBC-Based Encryption Mechanism with a HSM
Summary: CVE-2023-2197 HashiCorp/vault-enterprise: Vault Enterprise Vulnerable to Padd...
Keywords:
Status: CLOSED NOTABUG
Alias: CVE-2023-2197
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks: 2192428
TreeView+ depends on / blocked
 
Reported: 2023-05-15 08:52 UTC by Avinash Hanwate
Modified: 2023-05-16 13:41 UTC (History)
8 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2023-05-16 13:41:23 UTC
Embargoed:


Attachments (Terms of Use)

Description Avinash Hanwate 2023-05-15 08:52:47 UTC
HashiCorp Vault Enterprise 1.13.0 up to 1.13.1 is vulnerable to a padding oracle attack when using an HSM in conjunction with the CKM_AES_CBC_PAD or CKM_AES_CBC encryption mechanisms. An attacker with privileges to modify storage and restart Vault may be able to intercept or modify cipher text in order to derive Vault’s root key. Fixed in 1.13.2

https://discuss.hashicorp.com/t/hcsec-2023-14-vault-enterprise-vulnerable-to-padding-oracle-attacks-when-using-a-cbc-based-encryption-mechanism-with-a-hsm/53322

Comment 1 Product Security DevOps Team 2023-05-16 13:41:21 UTC
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):

https://access.redhat.com/security/cve/cve-2023-2197


Note You need to log in before you can comment on or make changes to this bug.