FreshPorts - VuXML
This page displays vulnerability information about FreeBSD Ports.
The VUXML data was last processed by FreshPorts on 2024-12-18 19:03:49 UTC
List all Vulnerabilities, by package
List all Vulnerabilities, by date
k68
These are the vulnerabilities relating to the commit you have selected:
VuXML ID | Description |
618010ff-3044-11eb-8112-000c292ee6b8 | nomad -- multiple vulnerabilities
The HashiCorp team reports:
- artifact: Fixed a bug where interpolation can be used in the
artifact destination field to write artifact payloads outside
the allocation directory.
- template: Fixed a bug where interpolation can be used in the
template source and destination fields to read or write files
outside the allocation directory even when disable_file_sandbox
was set to false (the default).
- template: Fixed a bug where the disable_file_sandbox
configuration was only respected for the template file function
and not the template source and destination fields.
Discovery 2020-10-21 Entry 2020-11-27 nomad
< 0.12.6
https://github.com/hashicorp/nomad/blob/master/CHANGELOG.md
CVE-2020-27195
|