CVE-2021-27099

Source
https://nvd.nist.gov/vuln/detail/CVE-2021-27099
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-27099.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2021-27099
Related
  • GHSA-q7gm-mjrg-44h9
Published
2021-03-05T18:15:13Z
Modified
2025-01-08T08:00:05.978797Z
Severity
  • 6.8 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N CVSS Calculator
Summary
[none]
Details

In SPIRE before versions 0.8.5, 0.9.4, 0.10.2, 0.11.3 and 0.12.1, the "aws_iid" Node Attestor improperly normalizes the path provided through the agent ID templating feature, which may allow the issuance of an arbitrary SPIFFE ID within the same trust domain, if the attacker controls the value of an EC2 tag prior to attestation, and the attestor is configured for agent ID templating where the tag value is the last element in the path. This issue has been fixed in SPIRE versions 0.11.3 and 0.12.1

References

Affected packages

Git / github.com/spiffe/spire

Affected ranges

Type
GIT
Repo
https://github.com/spiffe/spire
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

0.*

0.0.1
0.2
0.3
0.4
0.5
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.8.2
0.8.3
0.8.4