PT-2022-15744 · Saltstack+2 · Saltstack Salt+2
Published
2022-03-29
·
Updated
2023-12-21
·
CVE-2022-22936
CVSS v3.1
8.8
High
| Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
SaltStack Salt versions prior to 3002.8
SaltStack Salt versions prior to 3003.4
SaltStack Salt versions prior to 3004.1
Description
An issue was discovered in SaltStack Salt where job publishes and file server replies are susceptible to replay attacks. This can result in an attacker replaying job publishes, causing minions to run old jobs. File server replies can also be re-played, potentially allowing a sufficiently crafty attacker to gain root access on a minion under certain scenarios.
Recommendations
For versions prior to 3002.8, update to version 3002.8 or later.
For versions prior to 3003.4, update to version 3003.4 or later.
For versions prior to 3004.1, update to version 3004.1 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Saltstack Salt
Suse