Lucene search

K
osvGoogleOSV:PYSEC-2022-172
HistoryMar 29, 2022 - 5:15 p.m.

PYSEC-2022-172

2022-03-2917:15:00
Google
osv.dev
14
saltstack salt
authentication
denial of service
vulnerability
mitm attack
master impersonation

EPSS

0.001

Percentile

46.3%

An issue was discovered in SaltStack Salt in versions before 3002.8, 3003.4, 3004.1. A minion authentication denial of service can cause a MiTM attacker to force a minion process to stop by impersonating a master.