Improper Authentication in Salt - CVE-2022-22967
Published: June 24, 2022
Vulnerability identifier: #VU64660
CSH Severity: Low
CVSS v4: 7.7 [CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2022-22967
CWE-ID: CWE-287
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to bypass authentication process.
The vulnerability exists due to a missing check for PAM_ACCT_MGM return value. A remote user whose account is locked can continue to run Salt commands.
Affected software
Salt
Gentoo Linux
SUSE CaaS Platform
SUSE Manager Server
SUSE Manager Proxy
SUSE Linux Enterprise Module for SUSE Manager Server
SUSE Linux Enterprise Module for SUSE Manager Proxy
SUSE Linux Enterprise Micro
SUSE Enterprise Storage
SUSE Manager Debian
SUSE Manager Tools
SUSE Linux Enterprise High Performance Computing
SUSE Linux Enterprise Server for SAP Applications
SUSE Linux Enterprise Module for Advanced Systems Management
SUSE Linux Enterprise Server
SUSE Linux Enterprise Server for SAP
SUSE Linux Enterprise Desktop
SUSE Linux Enterprise Module for Basesystem
SUSE Linux Enterprise Module for Server Applications
SUSE Linux Enterprise Module for Transactional Server
openSUSE Leap
SUSE Manager Ubuntu
scap-security-guide-ubuntu
scap-security-guide-debian
spacecmd
python3-salt
python2-salt
salt-zsh-completion
salt-bash-completion
salt-standalone-formulas-configuration
salt-ssh
salt-proxy
salt-master
salt-cloud
salt-api
salt
salt-syndic
salt-minion
salt-doc
salt-common
app-admin/salt
venv-salt-minion
salt-fish-completion
salt-transactional-update
Dell EMC VxRail Appliance
Gentoo Linux
SUSE CaaS Platform
SUSE Manager Server
SUSE Manager Proxy
SUSE Linux Enterprise Module for SUSE Manager Server
SUSE Linux Enterprise Module for SUSE Manager Proxy
SUSE Linux Enterprise Micro
SUSE Enterprise Storage
SUSE Manager Debian
SUSE Manager Tools
SUSE Linux Enterprise High Performance Computing
SUSE Linux Enterprise Server for SAP Applications
SUSE Linux Enterprise Module for Advanced Systems Management
SUSE Linux Enterprise Server
SUSE Linux Enterprise Server for SAP
SUSE Linux Enterprise Desktop
SUSE Linux Enterprise Module for Basesystem
SUSE Linux Enterprise Module for Server Applications
SUSE Linux Enterprise Module for Transactional Server
openSUSE Leap
SUSE Manager Ubuntu
scap-security-guide-ubuntu
scap-security-guide-debian
spacecmd
python3-salt
python2-salt
salt-zsh-completion
salt-bash-completion
salt-standalone-formulas-configuration
salt-ssh
salt-proxy
salt-master
salt-cloud
salt-api
salt
salt-syndic
salt-minion
salt-doc
salt-common
app-admin/salt
venv-salt-minion
salt-fish-completion
salt-transactional-update
Dell EMC VxRail Appliance
How to mitigate CVE-2022-22967
Install updates from vendor's website.
Salt - addressed in versions 3002.9, 3003.5, 3004.2
scap-security-guide-ubuntu - addressed in versions 0.1.62-2.21.1, 0.1.62-20.1
scap-security-guide-debian - update to 0.1.62-2.21.1
spacecmd - addressed in versions 4.3.14-2.33.1, 4.3.14-2.48.1, 4.3.14-50.1
Dell EMC VxRail Appliance - update to 8.0.000
python3-salt - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
python2-salt - update to 3000-65.1
salt-zsh-completion - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-bash-completion - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-standalone-formulas-configuration - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-ssh - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-proxy - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-master - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-cloud - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-api - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-syndic - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-minion - addressed in versions 3000-65.1, 3004+ds-1+2.61.1, 3004+ds-1+2.82.1, 3004+ds-1+122.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-doc - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-common - addressed in versions 3004+ds-1+2.61.1, 3004+ds-1+2.82.1, 3004+ds-1+122.1
app-admin/salt - update to 3004.2
venv-salt-minion - addressed in versions 3004-2.11.2, 3004-3.11.1, 3004-150000.3.11.1
salt-fish-completion - addressed in versions 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-transactional-update - addressed in versions 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
scap-security-guide-ubuntu - addressed in versions 0.1.62-2.21.1, 0.1.62-20.1
scap-security-guide-debian - update to 0.1.62-2.21.1
spacecmd - addressed in versions 4.3.14-2.33.1, 4.3.14-2.48.1, 4.3.14-50.1
Dell EMC VxRail Appliance - update to 8.0.000
python3-salt - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
python2-salt - update to 3000-65.1
salt-zsh-completion - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-bash-completion - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-standalone-formulas-configuration - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-ssh - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-proxy - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-master - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-cloud - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-api - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-syndic - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-minion - addressed in versions 3000-65.1, 3004+ds-1+2.61.1, 3004+ds-1+2.82.1, 3004+ds-1+122.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-doc - addressed in versions 3000-65.1, 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-common - addressed in versions 3004+ds-1+2.61.1, 3004+ds-1+2.82.1, 3004+ds-1+122.1
app-admin/salt - update to 3004.2
venv-salt-minion - addressed in versions 3004-2.11.2, 3004-3.11.1, 3004-150000.3.11.1
salt-fish-completion - addressed in versions 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
salt-transactional-update - addressed in versions 3004-150000.8.41.40.1, 3004-150100.71.1, 3004-150300.53.24.1, 3004-150400.8.8.1
External References
Related Security Bulletins
- SUSE update for salt
- SUSE update for salt
- SUSE update for salt
- SUSE update for salt
- SUSE update for salt
- SUSE update for SUSE Manager Client Tools
- SUSE update for SUSE Manager Client Tools
- SUSE update for SUSE Manager Client Tools
- SUSE update for SUSE Manager Salt Bundle
- SUSE update for SUSE Manager Salt Bundle
- SUSE update for SUSE Manager Salt Bundle
- SUSE update for SUSE Manager Salt Bundle
- SUSE update for SUSE Manager Salt Bundle
- SUSE update for SUSE Manager Salt Bundle
- Multiple vulnerabilities in Dell VxRail Appliance components
- Gentoo update for Salt