CVE-2013-2275
CVE-2013-2275
The default configuration for puppet masters 0.25.0 and later in Puppet before 2.6.18, 2.7.x before 2.7.21, and 3.1.x before 3.1.1, and Puppet Enterprise before 1.2.7 and 2.7.x before 2.7.2, allows remote authenticated nodes to submit reports for other nodes via unspecified vectors.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://lists.opensuse.org/opensuse-security-announce/2013-04/msg00004.htmlhttp://lists.opensuse.org/opensuse-updates/2013-04/msg00056.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0710.htmlhttp://secunia.com/advisories/52596https://puppetlabs.com/security/cve/cve-2013-2275/http://ubuntu.com/usn/usn-1759-1http://www.debian.org/security/2013/dsa-2643http://www.securityfocus.com/bid/58449