Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-20897

Опубликовано: 05 сент. 2023
Источник: debian

Описание

Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
saltremovedpackage
saltend-of-lifebusterpackage

Примечания

  • https://saltproject.io/security-announcements/2023-08-10-advisory/

  • https://github.com/saltstack/salt/issues/64061

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 2 лет назад

Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted.

CVSS3: 5.3
nvd
около 2 лет назад

Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted.

CVSS3: 5.3
github
около 2 лет назад

Salt vulnerable to denial of service

suse-cvrf
около 2 лет назад

Security update for salt

suse-cvrf
около 2 лет назад

Security update for salt