Description
In etcd before versions 3.3.23 and 3.4.10, it is possible to have an entry index greater then the number of entries in the ReadAll method in wal/wal.go. This could cause issues when WAL entries are being read during consensus as an arbitrary etcd consensus participant could go down from a runtime panic when reading the entry.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-7121 | In etcd before versions 3.3.23 and 3.4.10, it is possible to have an entry index greater then the number of entries in the ReadAll method in wal/wal.go. This could cause issues when WAL entries are being read during consensus as an arbitrary etcd consensus participant could go down from a runtime panic when reading the entry. |
Github GHSA |
GHSA-m332-53r6-2w93 | etcd's WAL `ReadAll` method vulnerable to an entry with large index causing panic |
Ubuntu USN |
USN-5628-1 | etcd vulnerabilities |
Ubuntu USN |
USN-5628-2 | etcd vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-04T13:08:22.313Z
Reserved: 2020-06-25T00:00:00.000Z
Link: CVE-2020-15112
No data.
Status : Modified
Published: 2020-08-05T20:15:14.553
Modified: 2024-11-21T05:04:50.400
Link: CVE-2020-15112
OpenCVE Enrichment
No data.
EUVD
Github GHSA
Ubuntu USN