Lucene search

K
osvGoogleOSV:PYSEC-2021-73
HistoryFeb 27, 2021 - 5:15 a.m.

PYSEC-2021-73

2021-02-2705:15:00
Google
osv.dev
132

0.0004 Low

EPSS

Percentile

5.1%

An issue was discovered in SaltStack Salt before 3002.5. The minion’s restartcheck is vulnerable to command injection via a crafted process name. This allows for a local privilege escalation by any user able to create a files on the minion in a non-blacklisted directory.

Rows per page:
1-10 of 1591