CVE-2017-14696

HIGH7.5EPSS 1.9%

SaltStack Salt Denial of Service via a crafted authentication request

發布日:2022/5/17修改日:2024/10/22
也稱為:GHSA-657p-cj5r-mjrhPYSEC-2017-37

描述

SaltStack Salt before 2016.3.8, 2016.11.x before 2016.11.8, and 2017.7.x before 2017.7.2 allows remote attackers to cause a denial of service via a crafted authentication request.

受影響套件(2)

  • PyPI/saltfrom 0, < 2016.3.8
  • PyPI/saltfrom 0, < 5f8b5e1a0f23fe0f2be5b3c3e04199b57a53db5b | from 0, < 2016.3.8, >= 2016.11, < 2016.11.8, >= 2017.7, < 2017.7.2

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1HIGH7.5CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

參考連結(10)