Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-62349

Опубликовано: 30 янв. 2026
Источник: ubuntu
Приоритет: medium
CVSS3: 6.2

Описание

Salt contains an authentication protocol version downgrade weakness that can allow a malicious minion to bypass newer authentication/security features by using an older request payload format, enabling minion impersonation and circumventing protections introduced in response to prior issues.

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

needs-triage

esm-apps/jammy

needs-triage

esm-apps/xenial

needs-triage

esm-infra-legacy/trusty

needs-triage

jammy

needs-triage

noble

DNE

questing

DNE

upstream

needs-triage

Показывать по

6.2 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.2
nvd
8 дней назад

Salt contains an authentication protocol version downgrade weakness that can allow a malicious minion to bypass newer authentication/security features by using an older request payload format, enabling minion impersonation and circumventing protections introduced in response to prior issues.

CVSS3: 6.2
debian
8 дней назад

Salt contains an authentication protocol version downgrade weakness th ...

CVSS3: 6.2
github
8 дней назад

Salt Authentication Protocol Version Downgrade Allows Minion Impersonation

suse-cvrf
около 2 месяцев назад

Security update for salt

suse-cvrf
около 2 месяцев назад

Security update for salt

6.2 Medium

CVSS3