ALT-PU-2021-2076-1
Closed vulnerabilities
Published: 2021-04-23
BDU:2022-00655
Уязвимость модуля snapper системы управления конфигурациями и удалённого выполнения операций SaltStack Salt, позволяющая нарушителю повысить свои привилегии
Severity: HIGH (7.8)
Vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
References:
Published: 2021-04-23
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2021-31607
In SaltStack Salt 2016.9 through 3002.6, a command injection vulnerability exists in the snapper module that allows for local privilege escalation on a minion. The attack requires that a file is created with a pathname that is backed up by snapper, and that the master calls the snapper.diff function (which executes popen unsafely).
Severity: HIGH (7.8)
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
References:
- [debian-lts-announce] 20211110 [SECURITY] [DLA 2815-1] salt security update
- [debian-lts-announce] 20211110 [SECURITY] [DLA 2815-1] salt security update
- FEDORA-2021-158e9c6eb9
- FEDORA-2021-158e9c6eb9
- FEDORA-2021-93a7c8b7c6
- FEDORA-2021-93a7c8b7c6
- FEDORA-2021-5aaebdae8e
- FEDORA-2021-5aaebdae8e
- FEDORA-2021-00ada7e667
- FEDORA-2021-00ada7e667
- https://sec.stealthcopter.com/saltstack-snapper-minion-privledge-escaltion/
- https://sec.stealthcopter.com/saltstack-snapper-minion-privledge-escaltion/
- GLSA-202310-22
- GLSA-202310-22
- DSA-5011
- DSA-5011
Published: 2023-02-17
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2021-33226
Buffer Overflow vulnerability in Saltstack v.3003 and before allows attacker to execute arbitrary code via the func variable in salt/salt/modules/status.py file. NOTE: this is disputed by third parties because an attacker cannot influence the eval input
Severity: CRITICAL (9.8)
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
References: