Preventing Attackers from Stealing SSH Credentials via Predictable Pre-flight Script Path
CVE-2023-34049
What is CVE-2023-34049?
An issue in Salt-SSH's pre-flight option reveals a vulnerability where scripts copied to target virtual machines are placed in a predictable path. This design flaw enables attackers, with access to the target VM, to manipulate the execution of scripts by forcing Salt-SSH to run their own script equipped with the privileges of the user executing Salt-SSH. To mitigate this risk, it's crucial to obscure the copy path on the target and validate return codes of the scp command to ensure the integrity and security of the copy process.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SALT 3005 < 3005.4
SALT 3004 < 3006.4
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
