CVE-2025-22241

Name
CVE-2025-22241
Description
File contents overwrite the VirtKey class is called when “on-demand pillar” data is requested and uses un-validated input to create paths to the “pki directory”. The functionality is used to auto-accept Minion authentication keys based on a pre-placed “authorization file” at a specific location and is present in the default configuration.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
security@vmware.com https://docs.saltproject.io/en/3006/topics/releases/3006.12.html
security@vmware.com https://docs.saltproject.io/en/3007/topics/releases/3007.4.html

Match rules

CPE URI Source package Min version Max version
salt >= 3006.x < 3006.12
salt >= 3007.x < 3007.4

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
salt edge-community 3007.3-r0 Will Sinatra <wpsinatra@gmail.com> possibly vulnerable
salt edge-community 3007.2-r1 Will Sinatra <wpsinatra@gmail.com> possibly vulnerable
salt edge-community 3007.2-r0 Will Sinatra <wpsinatra@gmail.com> possibly vulnerable
salt edge-community 3007.1-r1 Will Sinatra <wpsinatra@gmail.com> possibly vulnerable
salt edge-community 3006.6-r0 Kevin Daudt <kdaudt@alpinelinux.org> possibly vulnerable
salt 3.22-community 3007.2-r1 Will Sinatra <wpsinatra@gmail.com> possibly vulnerable
salt 3.22-community 3007.1-r1 Will Sinatra <wpsinatra@gmail.com> possibly vulnerable
salt 3.22-community 3006.6-r0 None possibly vulnerable