HashiCorp Nomad and Nomad Enterprise up to 0.10.2 incorrectly validated role/region associated with TLS certificates used for mTLS RPC, and were susceptible to privilege escalation. Fixed in 0.10.3.
| Software | From | Fixed in |
|---|---|---|
| hashicorp / nomad | - | 0.10.3 |
github.com/hashicorp/nomad
|
- | 0.10.3 |