QID 690206

Date Published: 2021-11-18

QID 690206: Free Berkeley Software Distribution (FreeBSD) Security Update for salt (a1e03a3d-7be0-11eb-b392-20cf30e32f6d)

FreeBSD is an operating system used to power modern servers, desktops, and embedded platforms.

FreeBSD has released a security update.
Affected versions:

Version range 0.0.0 to 2019.2.8 for package py36-salt
Version range 3000 to 3002.5 for package py36-salt
Version range 0.0.0 to 2019.2.8 for package py36-salt-2019
Version range 3000 to 3002.5 for package py36-salt-2019
Version range 0.0.0 to 2019.2.8 for package py37-salt
Version range 3000 to 3002.5 for package py37-salt
Version range 0.0.0 to 2019.2.8 for package py37-salt-2019
Version range 3000 to 3002.5 for package py37-salt-2019
Version range 0.0.0 to 2019.2.8 for package py38-salt
Version range 3000 to 3002.5 for package py38-salt
Version range 0.0.0 to 2019.2.8 for package py38-salt-2019
Version range 3000 to 3002.5 for package py38-salt-2019
Version range 0.0.0 to 2019.2.8 for package py39-salt
Version range 3000 to 3002.5 for package py39-salt

QID Detection Logic: (Authenticated)
It checks package versions to check for the vulnerable packages.

Successful exploitation allows attacker to compromise the system.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Please refer to FreeBSD security advisory a1e03a3d-7be0-11eb-b392-20cf30e32f6d for updates and patch information
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    a1e03a3d-7be0-11eb-b392-20cf30e32f6d "FreeBSD" URL Logo vuxml.freebsd.org/freebsd/a1e03a3d-7be0-11eb-b392-20cf30e32f6d.html