A Minion Privilege Escalation Exploit was Fixed in SaltStack Project

Read the original article: A Minion Privilege Escalation Exploit was Fixed in SaltStack Project


Salt is one of the largest open source communities in the world, based on automation and Infrastructure management. A vulnerability, named CVE-2020-28243, was identified as a privilege escalation bug impacting SaltStack Salt minions. This allowed an unprivileged user to create files in any non-blacklisted directory via a command injection in a process name. ‘An issue was […]

The post A Minion Privilege Escalation Exploit was Fixed in SaltStack Project  appeared first on Heimdal Security Blog.


Read the original article: A Minion Privilege Escalation Exploit was Fixed in SaltStack Project