Security Advisory

CVE-2021-33226

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-02-17 00:00:00
Last updated 2025-03-18 19:05:39
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Buffer Overflow vulnerability in Saltstack v.3003 and before allows attacker to execute arbitrary code via the func variable in salt/salt/modules/status.py file. NOTE: this is disputed by third parties because an attacker cannot influence the eval input