CVE-2020-8595
Last modified
CVE-2020-8595 is a high-severity vulnerability rated 7.3/10 on the CVSS scale. Istio versions 1.2.10 (End of Life) and prior, 1.3 through 1.3.7, and 1.4 through 1.4.3 allows authentication bypass. The Authentication Policy exact-path matching logic can allow unauthorized access to HTTP paths even if they are configured to be only accessed after presenting a valid JWT token. EPSS estimates a 2.61% chance of exploitation in the next 30 days.
Description
Istio versions 1.2.10 (End of Life) and prior, 1.3 through 1.3.7, and 1.4 through 1.4.3 allows authentication bypass. The Authentication Policy exact-path matching logic can allow unauthorized access to HTTP paths even if they are configured to be only accessed after presenting a valid JWT token. For example, an attacker can add a ? or # character to a URI that would otherwise satisfy an exact-path match.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Istio | Istio | >= 1.3, <= 1.3.7 |
| Istio | Istio | >= 1.4.0, <= 1.4.3 |
| Redhat | Openshift Service Mesh | 1.0 |
References
- https://access.redhat.com/errata/RHSA-2020:0477Third Party Advisory
- https://access.redhat.com/security/cve/cve-2020-8595Mitigation, Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-8595Issue Tracking, Mitigation, Third Party Advisory
- https://istio.io/news/security/Vendor Advisory
- https://istio.io/news/security/istio-security-2020-001/Patch, Vendor Advisory
- https://access.redhat.com/errata/RHSA-2020:0477Third Party Advisory
- https://access.redhat.com/security/cve/cve-2020-8595Mitigation, Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-8595Issue Tracking, Mitigation, Third Party Advisory
- https://istio.io/news/security/Vendor Advisory
- https://istio.io/news/security/istio-security-2020-001/Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-8595?
How severe is CVE-2020-8595?
How do I fix CVE-2020-8595?
Are you affected by CVE-2020-8595?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
