Git Providers can read from the wrong environment because they get the same cache directory base name in Salt masters prior to 3005.2 or 3006.2. Anything that uses Git Providers with different environments can get garbage data or the wrong data, which can lead to wrongful data disclosure, wrongful executions, data corruption and/or crash.
Metrics
Affected Vendors & Products
References
History
Mon, 30 Sep 2024 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: vmware
Published: 2023-09-05T10:59:10.439Z
Updated: 2024-09-30T15:44:36.458Z
Reserved: 2022-11-01T15:41:50.396Z
Link: CVE-2023-20898
Vulnrichment
Updated: 2024-08-02T09:21:33.182Z
NVD
Status : Modified
Published: 2023-09-05T11:15:33.300
Modified: 2024-11-21T07:41:46.880
Link: CVE-2023-20898
Redhat
No data.