Vulnerability Database

Go icon go.etcd.io/etcd/v3

Title Severity Exploit Date Affected Version
Etcd auth Inaccurate logging of authentication attempts for users with CN-based auth only Low Feb 3, 2024 >= 3.4.0-rc.0 < 3.4.10
< 3.3.23
Etcd embed auto compaction retention negative value causing a compaction loop or a crash Low Feb 3, 2024 >= 3.4.0-rc.0 < 3.4.10
< 3.3.23
Etcd Gateway TLS endpoint validation only confirms TCP reachability Medium Feb 3, 2024 >= 3.4.0-rc.0 < 3.4.10
< 3.3.23
CVE-2022-34038 High Aug 22, 2023 < 3.5.5
CVE-2021-28235 Critical Apr 4, 2023 == 3.4.10
etcd vulnerable to TOCTOU of gateway endpoint authentication Low Oct 6, 2022 >= 3.4.0 < 3.4.10
< 3.3.23
CVE-2020-15112 Medium Aug 5, 2020 < 3.3.23
>= 3.4.0 < 3.4.10
CVE-2018-16886 High Jan 14, 2019 >= 3.2.0 < 3.2.26
>= 3.3.0 < 3.3.11