SaltStack Salt Denial of Service via a crafted authentication request
High severity
GitHub Reviewed
Published
May 17, 2022
to the GitHub Advisory Database
•
Updated Oct 22, 2024
Package
Affected versions
< 2016.3.8
>= 2016.11.0, < 2016.11.8
>= 2017.7.0, < 2017.7.2
Patched versions
2016.3.8
2016.11.8
2017.7.2
Description
Published by the National Vulnerability Database
Oct 24, 2017
Published to the GitHub Advisory Database
May 17, 2022
Reviewed
Apr 22, 2024
Last updated
Oct 22, 2024
SaltStack Salt before 2016.3.8, 2016.11.x before 2016.11.8, and 2017.7.x before 2017.7.2 allows remote attackers to cause a denial of service via a crafted authentication request.
References