HashiCorp Nomad and Nomad Enterprise 0.9.2 through 1.0.17, 1.1.11, and 1.2.5 allow operators with read-fs and alloc-exec (or job-submit) capabilities to read arbitrary files on the host filesystem as root.
| Software | From | Fixed in |
|---|---|---|
| hashicorp / nomad | 1.2.0 | 1.2.6 |
| hashicorp / nomad | 1.1.0 | 1.1.12 |
| hashicorp / nomad | 0.9.2 | 1.0.18 |
github.com/hashicorp/nomad
|
0.9.2 | 1.0.18 |
github.com/hashicorp/nomad
|
1.1.0 | 1.1.12 |
github.com/hashicorp/nomad
|
1.2.0 | 1.2.6 |