漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Gradient: Unauthenticated worker on /proto → arbitrary NAR write / cache poisoning
Vulnerability Description
Gradient is a nix-based continuous integration system. In 1.1.0, when GRADIENT_DISCOVERABLE=true (the default, and the NixOS module default), anyone who can reach /proto can register as a worker without any credentials by sending a fresh, never-registered worker UUID. The resulting session has PeerAuth::Open, i.e. it sees jobs from every organisation, and can immediately NarPush/NarUploaded arbitrary store paths into nar_storage and the cached_path table. This vulnerability is fixed in 1.1.1.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
Vulnerability Type
关键功能的认证机制缺失
Vulnerability Title
Gradient 访问控制错误漏洞
Vulnerability Description
Gradient是Wavelens开源的一个现代Nix持续集成系统。 Gradient 1.1.0版本存在访问控制错误漏洞,该漏洞源于未验证注册凭据,可能导致攻击者注册为工作节点并访问任意存储路径。
CVSS Information
N/A
Vulnerability Type
N/A