Skip to main content
Loading…
    CVE-2017-2292 — Versions of MCollective prior to 2.10.4 deserialized YAML from agents without calling safe_load, allowing the potential for arbitrary code execution on the server. The fix for this is to call YAML.saf — CVE Database · The Intelligence Room