First published: Wed Aug 09 2023(Updated: )
Dear Salt users and Salt Project Community members, Some medium rated vulnerabilities have been discovered in Salt versions 3006.1 and earlier. The vulnerabilities are a Medium rating based on the Common Vulnerability Scoring System (CVSS). We are preparing a CVE release to be available on Thursday, August 10th. The CVE packages will be available for 3005.2 and 3006.2. The releases will contain the fixes available to resolve and remediate the identified vulnerabilities. We advise all users to quickly apply the CVE release as soon as the packages are available. Please reach out if you have any questions or comments. You can reach us at saltproject-security.pdl@broadcom.com. Thank you, Your Salt Open Core team
Affected Software | Affected Version | How to fix |
---|---|---|
SaltStack Salt |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.