Skip to content

Conversation

@TimidRobot
Copy link
Member

Description

Update minion_target_version to 2019.2.3+ds-1

Other information

A difference in this pillar value will trigger salt.minion upgrade minion:

          ID: salt.minion upgrade minion
    Function: cmd.run
      Result: True
     Comment: Command "nohup /usr/local/sbin/upgrade_minion.sh 2019.2.3+ds-1" run
     Started: 17:01:45.690757
    Duration: 30.012 ms
     Changes:   
              ----------
              pid:
                  9354
              retcode:
                  None
              stderr:
              stdout:

See states/salt/minion.sls

Entire contents of Salt 2019.2.3 Release Notes:

Security Fix

CVE-2019-17361

With the Salt NetAPI enabled in addition to having a SSH roster defined, unauthenticated access is possible when specifying the client as SSH. Additionally, when the raw_shell option is specified any arbitrary command may be run on the Salt master when specifying SSH options.

Checklist

  • My pull request has a descriptive title (not a vague title like Update index.md).
  • My pull request targets the master branch of the repository.
  • My commit messages follow best practices.
  • I added tests for the changes I made (if applicable).
  • N/A I added or updated documentation (if applicable).
  • I tried running the project locally and verified that there are no
    visible errors.

Developer Certificate of Origin

Developer Certificate of Origin
Version 1.1

Copyright (C) 2004, 2006 The Linux Foundation and its contributors.
1 Letterman Drive
Suite D4700
San Francisco, CA, 94129

Everyone is permitted to copy and distribute verbatim copies of this
license document, but changing it is not allowed.


Developer's Certificate of Origin 1.1

By making a contribution to this project, I certify that:

(a) The contribution was created in whole or in part by me and I
    have the right to submit it under the open source license
    indicated in the file; or

(b) The contribution is based upon previous work that, to the best
    of my knowledge, is covered under an appropriate open source
    license and I have the right under that license to submit that
    work with modifications, whether created in whole or in part
    by me, under the same open source license (unless I am
    permitted to submit under a different license), as indicated
    in the file; or

(c) The contribution was provided directly to me by some other
    person who certified (a), (b) or (c) and I have not modified
    it.

(d) I understand and agree that this project and the contribution
    are public and that a record of the contribution (including all
    personal information I submit with it, including my sign-off) is
    maintained indefinitely and may be redistributed consistent with
    this project or the open source license(s) involved.

@TimidRobot TimidRobot requested a review from a team as a code owner January 16, 2020 17:10
@TimidRobot TimidRobot self-assigned this Jan 16, 2020
@TimidRobot TimidRobot merged commit 7d1db0e into master Jan 16, 2020
@TimidRobot TimidRobot deleted the salt-2019-2-3 branch January 16, 2020 21:11
@TimidRobot TimidRobot restored the salt-2019-2-3 branch March 23, 2020 18:54
@TimidRobot TimidRobot deleted the salt-2019-2-3 branch March 23, 2020 19:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants