Nixpkgs security tracker

Login with GitHub

Suggestions search

With package: consul

Found 5 matching suggestions

View:
Compact
Detailed
Permalink CVE-2026-87090
8.3 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): Low (L)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): Low (L)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 6 hours ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse ignored
    8 packages
    • envconsul
    • consul-alerts
    • consul-template
    • python313Packages.consul
    • python314Packages.consul
    • prometheus-consul-exporter
    • terraform-providers.consul
    • terraform-providers.hashicorp_consul
  • @LeSuisse accepted
  • @LeSuisse published on GitHub
Consul vulnerable to an authorization bypass in the catalog node-write path

Consul and Consul Enterprise are vulnerable to an authorization bypass in the catalog node-write path that may allow an authenticated attacker to delete another node's catalog registration and take over its node identity. An attacker with a token granting node-write permission on any single node name may exploit this issue if they can obtain the node ID of a node they do not control. This vulnerability (CVE-2026-87090) is fixed in Consul 2.0.4 and Consul Enterprise 1.21.18, 1.22.12 and 2.0.4.

Affected products

Consul
  • <2.0.4
Consul Enterprise
  • <2.0.4

Matching in nixpkgs

pkgs.consul

Tool for service discovery, monitoring and configuration

Ignored packages (8)

pkgs.envconsul

Read and set environmental variables for processes from Consul

pkgs.consul-alerts

Highly available daemon for sending notifications and reminders based on Consul health checks

Package maintainers

Permalink CVE-2026-88021
7.1 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): Low (L)
  • Availability (A): None (N)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): Low (L)
  • Modified Availability (MA): None (N)
updated 6 hours ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse ignored
    8 packages
    • envconsul
    • consul-alerts
    • consul-template
    • python313Packages.consul
    • python314Packages.consul
    • prometheus-consul-exporter
    • terraform-providers.consul
    • terraform-providers.hashicorp_consul
  • @LeSuisse accepted
  • @LeSuisse published on GitHub
Consul vulnerable to an authorization bypass in the Connect service mesh

Consul and Consul Enterprise are vulnerable to an authorization bypass in the Connect service mesh that may allow a service to reach a destination it is not authorized to access. When building Envoy RBAC rules to enforce Connect intentions, Consul did not correctly escape certain characters in service names, namespaces, and partitions, causing the generated authorization rules to match more broadly than intended. This vulnerability (CVE-2026-88021) is fixed in Consul 2.0.4 and Consul Enterprise 1.21.18, 1.22.12 and 2.0.4.

Affected products

Consul
  • <2.0.4
Consul Enterprise
  • <2.0.4

Matching in nixpkgs

pkgs.consul

Tool for service discovery, monitoring and configuration

Ignored packages (8)

pkgs.envconsul

Read and set environmental variables for processes from Consul

pkgs.consul-alerts

Highly available daemon for sending notifications and reminders based on Consul health checks

Package maintainers

Permalink CVE-2026-87106
6.5 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): None (N)
  • Integrity (I): None (N)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): None (N)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): None (N)
  • Modified Availability (MA): High (H)
updated 6 hours ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse ignored
    8 packages
    • envconsul
    • consul-alerts
    • consul-template
    • python313Packages.consul
    • python314Packages.consul
    • prometheus-consul-exporter
    • terraform-providers.consul
    • terraform-providers.hashicorp_consul
  • @LeSuisse accepted
  • @LeSuisse published on GitHub
Consul vulnerable to a denial of service in the native RPC listener

Consul and Consul Enterprise are vulnerable to a denial of service in the native RPC listener that may allow an authenticated client to exhaust server memory before ACL authorization is evaluated. A client that can complete the internal RPC mTLS handshake may exploit this issue without holding a valid ACL token. This vulnerability (CVE-2026-87106) is fixed in Consul 2.0.4 and Consul Enterprise 1.21.18, 1.22.12 and 2.0.4.

Affected products

Consul
  • <2.0.4
Consul Enterprise
  • <2.0.4

Matching in nixpkgs

pkgs.consul

Tool for service discovery, monitoring and configuration

Ignored packages (8)

pkgs.envconsul

Read and set environmental variables for processes from Consul

pkgs.consul-alerts

Highly available daemon for sending notifications and reminders based on Consul health checks

Package maintainers

Permalink CVE-2026-87107
5.4 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): None (N)
  • Integrity (I): Low (L)
  • Availability (A): Low (L)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): None (N)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): Low (L)
  • Modified Availability (MA): Low (L)
updated 6 hours ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse ignored
    8 packages
    • envconsul
    • consul-alerts
    • consul-template
    • python313Packages.consul
    • python314Packages.consul
    • prometheus-consul-exporter
    • terraform-providers.consul
    • terraform-providers.hashicorp_consul
  • @LeSuisse accepted
  • @LeSuisse published on GitHub
Consul vulnerable to an authorization bypass in the catalog deregistration path

Consul and Consul Enterprise are vulnerable to an authorization bypass in the catalog deregistration path that may allow a local ACL token to delete peer-imported catalog objects. A caller with {{service:write}} or {{node:write}} permission may exploit this issue to remove services, checks, or nodes imported from a peered cluster without holding authority over the peer origin. This vulnerability (CVE-2026-87107) is fixed in Consul 2.0.4 and Consul Enterprise 1.21.18, 1.22.12 and 2.0.4.

Affected products

Consul
  • <2.0.4
Consul Enterprise
  • <2.0.4

Matching in nixpkgs

pkgs.consul

Tool for service discovery, monitoring and configuration

Ignored packages (8)

pkgs.envconsul

Read and set environmental variables for processes from Consul

pkgs.consul-alerts

Highly available daemon for sending notifications and reminders based on Consul health checks

Package maintainers

Permalink CVE-2026-19017
6.8 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): High (H)
  • User Interaction (UI): None (N)
  • Scope (S): Changed (C)
  • Confidentiality (C): High (H)
  • Integrity (I): None (N)
  • Availability (A): None (N)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): High (H)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Changed (C)
  • Modified Integrity (MI): None (N)
  • Modified Availability (MA): None (N)
updated 1 month ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse ignored
    8 packages
    • consul-alerts
    • consul-template
    • python313Packages.consul
    • python314Packages.consul
    • prometheus-consul-exporter
    • terraform-providers.consul
    • terraform-providers.hashicorp_consul
    • envconsul
  • @LeSuisse accepted
  • @LeSuisse published on GitHub
Consul vulnerable to partial arbitrary file read via Vault Connect CA provider

Consul Community Edition and Consul Enterprise 1.18.21 through 2.0.2 are vulnerable to a partial arbitrary file read when configured to use the Vault Connect CA provider with JWT or AppRole authentication. A privileged attacker with `operator:write` permission may direct Consul to read and forward credential files outside the intended scope, potentially leading to the exfiltration of sensitive secrets from the Consul server host. This vulnerability, CVE-2026-19017, is fixed in Consul 2.0.3 and Consul Enterprise 1.21.17, 1.22.11, and 2.0.3.

Affected products

Consul
  • <2.0.3
Consul Enterprise
  • <2.0.3

Matching in nixpkgs

pkgs.consul

Tool for service discovery, monitoring and configuration

Ignored packages (8)

pkgs.envconsul

Read and set environmental variables for processes from Consul

pkgs.consul-alerts

Highly available daemon for sending notifications and reminders based on Consul health checks

Package maintainers