Description
HashiCorp Nomad and Nomad Enterprise 1.2.15 up to 1.3.8, and 1.4.3 jobs using a maliciously compressed artifact stanza source can cause excessive disk usage. Fixed in 1.2.16, 1.3.9, and 1.4.4.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0807 | HashiCorp Nomad and Nomad Enterprise 1.2.15 up to 1.3.8, and 1.4.3 jobs using a maliciously compressed artifact stanza source can cause excessive disk usage. Fixed in 1.2.16, 1.3.9, and 1.4.4. |
Github GHSA |
GHSA-w479-w22g-cffh | Uncontrolled Resource Consumption in Hashicorp Nomad |
References
History
Tue, 18 Mar 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: HashiCorp
Published:
Updated: 2025-03-18T14:35:44.335Z
Reserved: 2023-02-13T21:43:02.039Z
Link: CVE-2023-0821
Updated: 2024-08-02T05:24:34.494Z
Status : Modified
Published: 2023-02-16T22:15:11.097
Modified: 2026-06-17T05:26:23.083
Link: CVE-2023-0821
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-409
Improper Handling of Highly Compressed Data (Data Amplification)
- NVD-CWE-Other
EUVD
Github GHSA