299,184
Total vulnerabilities in the database
etcd before versions 3.3.23 and 3.4.10 does not perform any password length validation, which allows for very short passwords, such as those with a length of one. This may allow an attacker to guess or brute-force users' passwords with little computational effort.
| Software | From | Fixed in |
|---|---|---|
| redhat / etcd | 3.4.0 | 3.4.10 |
| redhat / etcd | 3.3.0 | 3.3.23 |
| fedoraproject / fedora | 32 | 32.x |
go.etcd.io/etcd/client/v3
|
3.4.0 | 3.4.10 |
go.etcd.io/etcd/client/v3
|
- | 3.3.23 |