LWN.net Logo

puppet: multiple vulnerabilities

Package(s):puppet CVE #(s):CVE-2012-1906 CVE-2012-1986 CVE-2012-1987 CVE-2012-1988 CVE-2012-1989
Created:April 11, 2012 Updated:August 15, 2012
Description: Puppet contains a set of vulnerabilities that can enable arbitrary file overwrite via Mac OS X package files (CVE-2012-1906), enable reading of arbitrary files (CVE-2012-1986), perform denial of service attacks (CVE-2012-1987), execute arbitrary code (CVE-2012-1988), or overwrite arbitrary files via symbolic links (CVE-2012-1989).
Alerts:
Ubuntu USN-1419-1 2012-04-11
Debian DSA-2451-1 2012-04-13
Fedora FEDORA-2012-5999 2012-04-27
Fedora FEDORA-2012-6055 2012-04-27
openSUSE openSUSE-SU-2012:0608-1 2012-05-10
openSUSE openSUSE-SU-2012:0835-1 2012-07-04
Gentoo 201208-02 2012-08-14

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds