Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vpjg-wmf8-29h9

Опубликовано: 05 сент. 2023
Источник: github
Github: Прошло ревью
CVSS3: 5.3

Описание

Salt vulnerable to denial of service

Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted.

Пакеты

Наименование

salt

pip
Затронутые версииВерсия исправления

< 3005.2

3005.2

Наименование

salt

pip
Затронутые версииВерсия исправления

>= 3006.0rc1, < 3006.2

3006.2

EPSS

Процентиль: 37%
0.00154
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-404

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 2 лет назад

Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted.

CVSS3: 5.3
nvd
больше 2 лет назад

Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted.

CVSS3: 5.3
debian
больше 2 лет назад

Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. ...

suse-cvrf
больше 2 лет назад

Security update for salt

suse-cvrf
больше 2 лет назад

Security update for salt

EPSS

Процентиль: 37%
0.00154
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-404