Article 52W64 Salt peppered with holes? Automation tool vulnerable to auth bypass: Patch now

Salt peppered with holes? Automation tool vulnerable to auth bypass: Patch now

by
from The Register on (#52W64)
'The impact is full remote command execution as root on both master and all minions'

The Salt configuration tool has patched two vulnerabilities whose combined effect was to expose Salt installations to complete control by an attacker. A patch for the issues was released last night, but systems that are not set to auto-update may still be vulnerable....

External Content
Source RSS or Atom Feed
Feed Location http://www.theregister.co.uk/headlines.atom
Feed Title The Register
Feed Link https://www.theregister.com/
Feed Copyright Copyright © 2024, Situation Publishing
Reply 0 comments