First published: Tue Jan 30 2024(Updated: )
Dear Salt users and Salt Project community members, Some High and Medium rated vulnerabilities have been discovered in Salt versions 3006.5 and earlier. The vulnerabilities have a High and Medium rating based on the Common Vulnerability Scoring System (CVSS). We are preparing a CVE release that will be available on Wednesday, January 31. The CVE packages will be available for 3006.5 and 3005.4. The releases will contain the fix available to resolve and remediate the identified vulnerability. We advise all users to quickly apply the CVE release as soon as the packages are available. Please reach out if you have any questions or comments. You can reach us at saltproject-security.pdl@broadcom.com. Thank you, Your Salt Open Core team
Affected Software | Affected Version | How to fix |
---|---|---|
SaltStack Salt |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.