![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2011-0528 |
Description: | Puppet 2.6.0 through 2.6.3 does not properly restrict access to node resources, which allows remote authenticated Puppet nodes to read or modify the resources of other nodes via unspecified vectors. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.840898 1.3.6.1.4.1.25623.1.0.71757 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2011-0528 USN-1365-1 http://www.ubuntu.com/usn/USN-1365-1 [oss-security] 20110127 CVE request: puppet http://www.openwall.com/lists/oss-security/2011/01/27/6 [oss-security] 20110127 Re: CVE request: puppet http://www.openwall.com/lists/oss-security/2011/01/31/5 [puppet-users] 20101201 SECURITY: Authorization vulnerability in Puppet 2.6.x http://www.mail-archive.com/puppet-users%40googlegroups.com/msg16429.html |