CVE-2019-12243: High severity istio vulnerability
Published Jun 5, 2019
·Updated
Istio 1.1.x through 1.1.6 has Incorrect Access Control.
Affected Software
2 affected componentsFixes available
go/istio.io/istio>=1.1.0<1.1.7
1.1.7
Istio Istio>=1.1<=1.1.6
Event History
Jun 5, 2019
CVE Published
via MITRE·02:41 PM
Data Sourced
via MITRE·02:41 PM
Description
Feb 15, 2022
Advisory Published
01:57 AM
Frequently Asked Questions
1
What is the vulnerability ID for the Istio Incorrect Access Control vulnerability?
The vulnerability ID for the Istio Incorrect Access Control vulnerability is CVE-2019-12243.
2
What is the severity rating of CVE-2019-12243?
The severity rating of CVE-2019-12243 is high with a score of 8.9.
3
How does the Istio Incorrect Access Control vulnerability affect the software?
The Istio Incorrect Access Control vulnerability affects Istio versions 1.1.x through 1.1.6 and Microsoft Windows Server 2022.
4
How can I fix the Istio Incorrect Access Control vulnerability?
To fix the Istio Incorrect Access Control vulnerability, upgrade to Istio version 1.1.7 or higher.
5
Where can I find more information about CVE-2019-12243?
You can find more information about CVE-2019-12243 on the NIST National Vulnerability Database, Istio blog, and GitHub.