CVE-2023-3774
An unhandled error in Vault Enterprise's namespace creation may cause the Vault process to crash, potentially resulting in denial of service. Fixed in 1.14.1, 1.13.5, and 1.12.9.
- Affected products
- Vault Enterprise
- Hashicorp Vault
- = 1.12.8, 1.13.4, 1.14.0
- Fix
- Available
- CVSS 3.1
- 4.9 MEDIUM
- EPSS
- 0.7% (49th percentile)
- Weakness
- CWE-755, CWE-248
- NVD status
- Modified
- Published
- 2023-07-28
- Attack patterns
- CAPEC-469
CVE-2023-3774 at NVD
No indexed exploits for CVE-2023-3774 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2023-3774 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.