LWN.net Logo

puppet: unintended access to resources

Package(s):Puppet CVE #(s):CVE-2011-0528
Created:February 14, 2012 Updated:February 15, 2012
Description: From the Ubuntu advisory:

It was discovered that Puppet would allow remote ralsh under certain circumstances. An attacker on an authenticated puppet node could exploit this to view or manipulate resources on other Puppet nodes.

Alerts:
Ubuntu USN-1365-1 2012-02-14

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds