Lucene search

K
redhatcveRedhat.comRH:CVE-2020-15136
HistoryAug 14, 2020 - 6:43 a.m.

CVE-2020-15136

2020-08-1406:43:32
redhat.com
access.redhat.com
11

0.003 Low

EPSS

Percentile

69.3%

A flaw was found in etcd. The gateway TLS authentication is only applied to endpoints detected in DNS SRV records. When starting a gateway, TLS authentication will only be attempted on endpoints identified in DNS SRV records for a given domain, which occurs in the discoverEndpoints function. No authentication is performed against endpoints provided in the --endpoints flag.