Lucene search

K
osvGoogleOSV:GHSA-CVCC-5X92-GMHC
HistoryMar 30, 2022 - 12:00 a.m.

SaltStack Salt Improper Authentication via Man in the Middle Attack

2022-03-3000:00:20
Google
osv.dev
8
saltstack
authentication
vulnerability
denial of service
mitm
attack

AI Score

4.1

Confidence

High

EPSS

0.001

Percentile

46.3%

An issue was discovered in SaltStack Salt in versions before 3002.8, 3003.4, 3004.1. A minion authentication denial of service can cause a MiTM attacker to force a minion process to stop by impersonating a master.

AI Score

4.1

Confidence

High

EPSS

0.001

Percentile

46.3%