Source: salt Version: 2015.8.7+ds-1 Severity: important Tags: security upstream fixed-upstream
Hi, the following vulnerability was published for salt. Please double-check. It is fixed upstream in 2015.8.8 and said to affect all previous releases. CVE-2016-3176[0]: insecure configuration of PAM external authentication service If you fix the vulnerability please also make sure to include the CVE (Common Vulnerabilities & Exposures) id in your changelog entry. For further information see: [0] https://security-tracker.debian.org/tracker/CVE-2016-3176 Please adjust the affected versions in the BTS as needed. Regards, Salvatore