CVE-2023-3774

MEDIUM4.9EPSS 0.52%

Vault Enterprise Namespace Creation May Lead to Denial of Service

Published: 3/6/2024Modified: 5/20/2025

Description

An unhandled error in Vault Enterprise's namespace creation may cause the Vault process to crash, potentially resulting in denial of service. Fixed in 1.14.1, 1.13.5, and 1.12.9.

Affected packages (1)

  • Bitnami/vault>= 1.12.8, < 1.12.9, >= 1.13.4, < 1.13.5, >= 1.14.0, < 1.14.1

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM4.9CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

References (2)