Опубликовано: 29 мар. 2022
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3
CVSS3: 3.7
Описание
An issue was discovered in SaltStack Salt in versions before 3002.8, 3003.4, 3004.1. A minion authentication denial of service can cause a MiTM attacker to force a minion process to stop by impersonating a master.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needs-triage |
| devel | DNE | |
| esm-apps/bionic | needs-triage | |
| esm-apps/jammy | needs-triage | |
| esm-apps/xenial | needs-triage | |
| esm-infra-legacy/trusty | needs-triage | |
| impish | ignored | end of life |
| jammy | needs-triage | |
| kinetic | ignored | end of life, was needs-triage |
| lunar | DNE |
Показывать по
10
EPSS
Процентиль: 23%
0.00078
Низкий
4.3 Medium
CVSS2
3.7 Low
CVSS3
Связанные уязвимости
CVSS3: 3.7
nvd
почти 4 года назад
An issue was discovered in SaltStack Salt in versions before 3002.8, 3003.4, 3004.1. A minion authentication denial of service can cause a MiTM attacker to force a minion process to stop by impersonating a master.
CVSS3: 3.7
debian
почти 4 года назад
An issue was discovered in SaltStack Salt in versions before 3002.8, 3 ...
CVSS3: 3.7
github
почти 4 года назад
SaltStack Salt Improper Authentication via Man in the Middle Attack
EPSS
Процентиль: 23%
0.00078
Низкий
4.3 Medium
CVSS2
3.7 Low
CVSS3