Back

LOW

Vault Enterprise Vulnerable to Padding Oracle Attacks When Using a CBC-based Encryption Mechanism with a HSM

Published May 1, 2023

Description

HashiCorp Vault Enterprise 1.13.0 up to 1.13.1 is vulnerable to a padding oracle attack when using an HSM in conjunction with the CKM_AES_CBC_PAD or CKM_AES_CBC encryption mechanisms. An attacker with privileges to modify storage and restart Vault may be able to intercept or modify cipher text in order to derive Vault’s root key. Fixed in 1.13.2

Affected products

Remediation

Red Hat statement

This CVE affects the HashiCorp Vault Enterprise edition, which is not shipped in Red Hat products.

References (7)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner HashiCorp
Published May 1, 2023
Updated Feb 13, 2025
Reserved Apr 20, 2023
CISA Vulnrichment
Updated Jan 30, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date May 1, 2023
ENISA EUVD
Assigner HashiCorp
Published May 1, 2023
Updated Feb 13, 2025
Exploited since n/a
EUVD-2023-33710