An issue was discovered in SaltStack Salt in versions before 3002.8, 3003.4, 3004.1. A minion authentication denial of service can cause a MiTM attacker to force a minion process to stop by impersonating a master.
2022-03-29T17:15:15.220
2025-05-05T17:17:54.170
Modified
CVSSv3.1: 3.7 (LOW)
AV:N/AC:M/Au:N/C:N/I:N/A:P
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | saltstack | salt | < 3002.8 | Yes |
Application | saltstack | salt | < 3003.4 | Yes |
Application | saltstack | salt | < 3004.1 | Yes |