Description
Salt (aka SaltStack) before 0.17.1 allows remote attackers to execute arbitrary YAML code via unspecified vectors. NOTE: the vendor states that this might not be a vulnerability because the YAML to be loaded has already been determined to be safe.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2013-0035 | Salt (aka SaltStack) before 0.17.1 allows remote attackers to execute arbitrary YAML code via unspecified vectors. NOTE: the vendor states that this might not be a vulnerability because the YAML to be loaded has already been determined to be safe. |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-09-17T03:54:13.381Z
Reserved: 2013-06-12T00:00:00.000Z
Link: CVE-2013-4438
No data.
Status : Deferred
Published: 2013-11-05T18:55:04.900
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-4438
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD