漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Cluster Existence Oracle via Unauthenticated Import Endpoint
Vulnerability Description
The endpoint /v3/import/{token}_{clusterId}.yaml retrieves the cluster object before validating the token. When a valid cluster ID references a cluster that has private registry secrets configured, a nil pointer dereference in pkg/systemtemplate/private_registry.go causes the request to return HTTP 502 Bad Gateway. For cluster IDs that do not exist, the endpoint returns HTTP 200. This observable difference in response codes constitutes a reliable enumeration oracle.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
响应差异性信息暴露
Vulnerability Title
SUSE Rancher 侧信道信息泄露漏洞
Vulnerability Description
SUSE rancher是德国SUSE公司开源的一款一套容器管理平台。 SUSE Rancher 2.14.0至2.14.4之前版本、2.13.0至2.13.8之前版本、2.12.0至2.12.12之前版本和2.11.0至2.11.16之前版本存在侧信道信息泄露漏洞,该漏洞源于在验证令牌之前检索集群对象,当集群配置了私有注册表密钥时,pkg/systemtemplate/private_registry.go中的空指针取消引用导致请求返回HTTP 502,而不存在的集群ID返回HTTP 200,响应码差异
CVSS Information
N/A
Vulnerability Type
N/A