Directory traversal vulnerability in minion id validation in SaltStack. Allows remote minions with incorrect credentials to authenticate to a master via a crafted minion ID. References: https://docs.saltstack.com/en/latest/topics/releases/2017.7.2.html
Created salt tracking bugs for this issue: Affects: epel-all [bug 1500750]
upstream fix: https://github.com/saltstack/salt/commit/80d90307b07b3703428ecbb7c8bb468e28a9ae6d