Skip to content

Zero Trust Secure Web Gateway policies bypass using WARP client subcommands

High
mskowroncf published GHSA-cg88-vx48-976c Jul 25, 2022

Package

Cloudflare WARP Client (Windows)

Affected versions

<2022.5.341.0

Patched versions

2022.5.341.0
Cloudflare WARP Client (Linux)
<2022.5.346
2022.5.346
Cloudflare WARP Client (MacOS)
<2022.5.227.0
2022.5.227.0

Description

Impact

By using warp-cli subcommands (disable-ethernet, disable-wifi), it was possible for a user without admin privileges to bypass configured Zero Trust security policies (e.g. Secure Web Gateway policies) and features such as 'Lock WARP switch'.
The issue concerns WARP clients enrolled in Zero Trust organisation mode.

Patches

Fixed versions:

  • Windows: 2022.5.341.0
  • Linux: 2022.5.346
  • MacOS: 2022.5.227.0

References

Severity

High

CVE ID

CVE-2022-2225

Weaknesses