Vulnerability Description
An issue was discovered in SaltStack Salt through 3002. Sending crafted web requests to the Salt API, with the SSH client enabled, can result in shell injection.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Saltstack | Salt | < 2015.8.10 |
| Debian | Debian Linux | 9.0 |
| Fedoraproject | Fedora | 31 |
| Opensuse | Leap | 15.1 |
Related Weaknesses (CWE)
References
- http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00029.htmlMailing ListThird Party Advisory
- http://packetstormsecurity.com/files/160039/SaltStack-Salt-REST-API-Arbitrary-CoExploitThird Party AdvisoryVDB Entry
- https://github.com/saltstack/salt/releasesRelease Notes
- https://lists.debian.org/debian-lts-announce/2020/12/msg00007.htmlMailing ListThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2022/01/msg00000.htmlMailing ListThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproRelease Notes
- https://security.gentoo.org/glsa/202011-13Third Party Advisory
- https://www.debian.org/security/2021/dsa-4837Mailing ListThird Party Advisory
- https://www.saltstack.com/blog/on-november-3-2020-saltstack-publicly-disclosed-tBroken LinkVendor Advisory
- https://www.zerodayinitiative.com/advisories/ZDI-20-1379/Third Party AdvisoryVDB Entry
- https://www.zerodayinitiative.com/advisories/ZDI-20-1380/Third Party AdvisoryVDB Entry
- https://www.zerodayinitiative.com/advisories/ZDI-20-1381/Third Party AdvisoryVDB Entry
- https://www.zerodayinitiative.com/advisories/ZDI-20-1382/Third Party AdvisoryVDB Entry
- https://www.zerodayinitiative.com/advisories/ZDI-20-1383/Third Party AdvisoryVDB Entry
- http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00029.htmlMailing ListThird Party Advisory
FAQ
What is CVE-2020-16846?
CVE-2020-16846 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An issue was discovered in SaltStack Salt through 3002. Sending crafted web requests to the Salt API, with the SSH client enabled, can result in shell injection.
How severe is CVE-2020-16846?
CVE-2020-16846 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-16846?
Check the references section above for vendor advisories and patch information. Affected products include: Saltstack Salt, Debian Debian Linux, Fedoraproject Fedora, Opensuse Leap.