VDB

BDU%3A2025-00947

BDU%3A2025-00947 PUBLISHED CVSS 6.400000095367432 MEDIUM

Уязвимость системы управления конфигурациями и удалённого выполнения операций Salt, веб-фреймворка Python Tornado, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

Risk Scores

CVSS 2.0
6.400000095367432

Affected Products

VendorProductVersions
Novell Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», ООО «РусБИТех-Астра», Red Hat Inc., FriendFeedSUSE Linux Enterprise Server for SAP Applications, OpenSUSE Leap, Suse Linux Enterprise Server, SUSE Linux Enterprise High Performance Computing, SUSE OpenStack Cloud, openSUSE Tumbleweed, SUSE CaaS Platform, Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Astra Linux Special Edition (запись в едином реестре российских программ №369), SUSE Manager Proxy, SUSE Manager Server, SUSE Enterprise Storage, SUSE Linux Enterprise Micro, Suse Linux Enterprise Desktop, SUSE Manager Retail Branch Server, Red Hat Enterprise Linux, SUSE Linux Enterprise Module for Server Applications, SUSE Linux Enterprise Module for Basesystem, openSUSE Leap Micro, SUSE Linux Enterprise Real Time, Astra Linux Common Edition (запись в едином реестре российских программ №4433), SUSE Manager Server Module, SUSE Liberty Linux, SUSE Linux Enterprise Module for Package Hub, SUSE Linux Enterprise Module for Advanced Systems Management, SUSE Manager Client Tools, SUSE Linux Enterprise Module for Python 3, Tornado, SUSE Linux Enterprise Module for Transactional Server, SUSE Manager Proxy Module

Timeline

  • Feb 3, 2025 CVE Published
  • Jan 20, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›