Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted.
References
Configurations
Configuration 1 (hide)
|
History
13 Feb 2025, 17:16
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted. |
Information
Published : 2023-09-05 11:15
Updated : 2025-02-13 17:16
NVD link : CVE-2023-20897
Mitre link : CVE-2023-20897
CVE.ORG link : CVE-2023-20897
JSON object : View
Products Affected
saltstack
- salt
CWE
CWE-404
Improper Resource Shutdown or Release