Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 PyPI

SaltStack Privilege Escalation vulnerability

GHSA-7wx3-vr2f-6p29 · CVE-2013-6617 · PYSEC-2013-15

Published · Modified

Description

The salt master in Salt (aka SaltStack) 0.11.0 through 0.17.0 does not properly drop group privileges, which makes it easier for remote attackers to gain privileges.

Ready to move

Start Securing

Free, no credit card | First findings in minutes