Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vpjg-wmf8-29h9

Опубликовано: 05 сент. 2023
Источник: github
Github: Прошло ревью
CVSS3: 5.3

Описание

Salt vulnerable to denial of service

Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted.

Пакеты

Наименование

salt

pip
Затронутые версииВерсия исправления

< 3005.2

3005.2

Наименование

salt

pip
Затронутые версииВерсия исправления

>= 3006.0rc1, < 3006.2

3006.2

EPSS

Процентиль: 31%
0.0011
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-404

Связанные уязвимости

CVSS3: 5.3
ubuntu
почти 2 года назад

Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted.

CVSS3: 5.3
nvd
почти 2 года назад

Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted.

CVSS3: 5.3
debian
почти 2 года назад

Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. ...

suse-cvrf
больше 1 года назад

Security update for salt

suse-cvrf
больше 1 года назад

Security update for salt

EPSS

Процентиль: 31%
0.0011
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-404