Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Fedora 23: Security Update SALT 2015.5.8 For Insecure File Handling

fedora
Calendar Grey January 15, 2016
Dist Fedora Esm H88
Notification of a recent bugfix update for Salt in Fedora, featuring critical enhancements for security and measures addressing vulnerabilities associated with file management.
Update to bugfix release 2015.5.8

Summary

Salt is a distributed remote execution system used to execute commands and

query data. It was developed in order to bring the best solutions found in

the world of remote execution together and make them better, faster and more

malleable. Salt accomplishes this via its ability to handle larger loads of

information, and not just dozens, but hundreds or even thousands of individual

servers, handle them quickly and through a simple and manageable interface.

Update Information:

Update to bugfix release 2015.5.8

Change Log

References


[ 1 ] Bug #1212784 - CVE-2015-1838 salt: insecure /tmp file handling in salt/modules/serverdensity_device.py https://bugzilla.redhat.com/show_bug.cgi?id=1212784 [ 2 ] Bug #1212788 - CVE-2015-1839 salt: insecure /tmp file handling in salt/modules/chef.py https://bugzilla.redhat.com/show_bug.cgi?id=1212788

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update salt' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
important
Lowest
Low
Medium
High
Critical

Name: salt
Product: Fedora 23
Version: 2015.5.8
Release: 1.fc23
Summary: A parallel remote execution system

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here