Security Advisory

CVE-2022-24686

5.9
MEDIUM

Vulnerability Description

HashiCorp Nomad and Nomad Enterprise 0.3.0 through 1.0.17, 1.1.11, and 1.2.5 artifact download functionality has a race condition such that the Nomad client agent could download the wrong artifact into the wrong destination. Fixed in 1.0.18, 1.1.12, and 1.2.6
Published Date February 14, 2022
Official Source NIST NVD Advisory