It was discovered that Salt incorrectly handled crafted web requests. A remote attacker could possibly use this issue to run arbitrary commands. (CVE-2020-16846)
It was discovered that Salt incorrectly created certificates with weak file permissions. (CVE-2020-17490)
It was discovered that Salt incorrectly handled credential validation. A remote attacker could possibly use this issue to bypass authentication. (CVE-2020-25592)
It was discovered that Salt incorrectly handled crafted process names. An attacker could possibly use this issue to run arbitrary commands. This issue only affected Ubuntu 18.04 LTS. (CVE-2020-28243)
It was discovered that Salt incorrectly handled validation of SSL/TLS certificates. A remote attacker could possibly use this issue to spoof a trusted entity. (CVE-2020-28972, CVE-2020-35662)
It was discovered that Salt incorrectly handled credential validation. A remote attacker could possibly use this issue to run arbitrary code. (CVE-2021-25281)
It was discovered that Salt incorrectly handled crafted paths. A remote attacker could possibly use this issue to perform directory traversal. (CVE-2021-25282)
It was discovered that Salt incorrectly handled template rendering. A remote attacker could possibly this issue to run arbitrary code. (CVE-2021-25283)
It was discovered that Salt incorrectly handled logging. An attacker could possibly use this issue to discover credentials. This issue only affected Ubuntu 18.04 LTS. (CVE-2021-25284)
It was discovered that Salt incorrectly handled crafted web requests. A remote attacker could possibly use this issue to run arbitrary commands. This issue only affected Ubuntu 18.04 LTS. (CVE-2021-3148)
It was discovered that Salt incorrectly handled input sanitization. A remote attacker could possibly use this issue to run arbitrary commands. (CVE-2021-3197)
{ "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_version": "2015.8.8+ds-1ubuntu0.1+esm2", "binary_name": "salt-api" }, { "binary_version": "2015.8.8+ds-1ubuntu0.1+esm2", "binary_name": "salt-cloud" }, { "binary_version": "2015.8.8+ds-1ubuntu0.1+esm2", "binary_name": "salt-common" }, { "binary_version": "2015.8.8+ds-1ubuntu0.1+esm2", "binary_name": "salt-doc" }, { "binary_version": "2015.8.8+ds-1ubuntu0.1+esm2", "binary_name": "salt-master" }, { "binary_version": "2015.8.8+ds-1ubuntu0.1+esm2", "binary_name": "salt-minion" }, { "binary_version": "2015.8.8+ds-1ubuntu0.1+esm2", "binary_name": "salt-proxy" }, { "binary_version": "2015.8.8+ds-1ubuntu0.1+esm2", "binary_name": "salt-ssh" }, { "binary_version": "2015.8.8+ds-1ubuntu0.1+esm2", "binary_name": "salt-syndic" } ] }
{ "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_version": "2017.7.4+dfsg1-1ubuntu18.04.2+esm1", "binary_name": "salt-api" }, { "binary_version": "2017.7.4+dfsg1-1ubuntu18.04.2+esm1", "binary_name": "salt-cloud" }, { "binary_version": "2017.7.4+dfsg1-1ubuntu18.04.2+esm1", "binary_name": "salt-common" }, { "binary_version": "2017.7.4+dfsg1-1ubuntu18.04.2+esm1", "binary_name": "salt-doc" }, { "binary_version": "2017.7.4+dfsg1-1ubuntu18.04.2+esm1", "binary_name": "salt-master" }, { "binary_version": "2017.7.4+dfsg1-1ubuntu18.04.2+esm1", "binary_name": "salt-minion" }, { "binary_version": "2017.7.4+dfsg1-1ubuntu18.04.2+esm1", "binary_name": "salt-proxy" }, { "binary_version": "2017.7.4+dfsg1-1ubuntu18.04.2+esm1", "binary_name": "salt-ssh" }, { "binary_version": "2017.7.4+dfsg1-1ubuntu18.04.2+esm1", "binary_name": "salt-syndic" } ] }