rpk in Redpanda before 23.1.2 mishandles the redpanda.rpc_server_tls field, leading to (for example) situations in which there is a data type mismatch that cannot be automatically fixed by rpk, and instead a user must reconfigure (while a cluster is turned off) in order to have TLS on broker RPC ports. NOTE: the fix was also backported to the 22.2 and 22.3 branches.
Metrics
Affected Vendors & Products
References
History
Wed, 12 Feb 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-20 | |
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: mitre
Published: 2023-04-08T00:00:00.000Z
Updated: 2025-02-12T16:22:02.700Z
Reserved: 2023-04-08T00:00:00.000Z
Link: CVE-2023-30450

Updated: 2024-08-02T14:21:44.819Z

Status : Modified
Published: 2023-04-08T23:15:06.930
Modified: 2025-02-12T17:15:20.380
Link: CVE-2023-30450

No data.