« Volver al listado

CVE-2025-22242

Estado: AplazadaMedia (5.6)—

Worker process denial of service through file read operation. .A vulnerability exists in the Master's “pub_ret” method which is exposed to all minions. The un-sanitized input value “jid” is used to construct a path which is then opened for reading. An attacker could exploit this vulnerabilities by attempting to read from a filename that will not return any data, e.g. by targeting a pipe node on the proc file system.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2025-22242",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2025-22242",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "partial"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2025-06-13T15:23:55.859324Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "security@vmware.com",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 5.6,
          "attackVector": "LOCAL",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:H",
          "integrityImpact": "NONE",
          "userInteraction": "REQUIRED",
          "attackComplexity": "HIGH",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "HIGH",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.2,
        "exploitabilityScore": 0.3
      }
    ]
  },
  "affected": [
    {
      "source": "security@vmware.com",
      "affectedData": [
        {
          "vendor": "VMware",
          "product": "SALT",
          "versions": [
            {
              "status": "affected",
              "version": "3006.x",
              "lessThan": "3006.12",
              "versionType": "lts"
            },
            {
              "status": "affected",
              "version": "3007.x",
              "lessThan": "3007.4",
              "versionType": "sts"
            }
          ],
          "packageName": "Salt",
          "defaultStatus": "unaffected"
        }
      ]
    }
  ],
  "published": "2025-06-13T07:15:21.710",
  "references": [
    {
      "url": "https://docs.saltproject.io/en/3006/topics/releases/3006.12.html",
      "source": "security@vmware.com"
    },
    {
      "url": "https://docs.saltproject.io/en/3007/topics/releases/3007.4.html",
      "source": "security@vmware.com"
    }
  ],
  "vulnStatus": "Deferred",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
      "description": [
        {
          "lang": "en",
          "value": "CWE-400"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Worker process denial of service through file read operation. .A vulnerability exists in the Master's “pub_ret” method which is exposed to all minions. The un-sanitized input value “jid” is used to construct a path which is then opened for reading. An attacker could exploit this vulnerabilities by attempting to read from a filename that will not return any data, e.g. by targeting a pipe node on the proc file system."
    },
    {
      "lang": "es",
      "value": "Denegación de servicio del proceso de trabajo mediante la operación de lectura de archivos. Existe una vulnerabilidad en el método \"pub_ret\" del maestro, que está expuesta a todos los minions. El valor de entrada \"jid\", sin depurar, se utiliza para construir una ruta que posteriormente se abre para lectura. Un atacante podría explotar esta vulnerabilidad intentando leer un nombre de archivo que no devuelva datos, por ejemplo, atacando un nodo de canalización en el sistema de archivos proc."
    }
  ],
  "lastModified": "2026-06-17T08:45:51.787",
  "sourceIdentifier": "security@vmware.com"
}